2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2912 | — | — | 2.0% | May 21, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the LeagueManager plugin 3.7 for WordPress allow remote attackers... |
| CVE-2012-2911 | — | — | 1.6% | May 21, 2012 | Cross-site scripting (XSS) vulnerability in backupDB.php in SiliSoftware backupDB() 1.2.7a allows remote attackers to in... |
| CVE-2012-2910 | — | — | 1.7% | May 21, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in SiliSoftware phpThumb() 1.7.11 allow remote attackers to inject a... |
| CVE-2012-2909 | — | — | 1.6% | May 21, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Viscacha 0.8.1.1 allow remote attackers to inject arbitrary web s... |
| CVE-2012-2908 | — | — | 1.1% | May 21, 2012 | Multiple SQL injection vulnerabilities in admin/bbcodes.php in Viscacha 0.8.1.1 allow remote attackers to execute arbitr... |
| CVE-2012-2907 | — | — | 1.4% | May 21, 2012 | Cross-site scripting (XSS) vulnerability in the aberdeen_breadcrumb function in template.php in the Aberdeen theme 6.x-1... |
| CVE-2012-2906 | — | — | 2.0% | May 21, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in artpublic/recommandation/index.php in Artiphp CMS 5.5.0 Neo (r422... |
| CVE-2012-2905 | — | — | 3.1% | May 21, 2012 | Artiphp CMS 5.5.0 Neo (r422) stores database backups with predictable names under the web root with insufficient access ... |
| CVE-2012-2904 | — | — | 4.5% | May 21, 2012 | player.swf in LongTail JW Player 5.9 allows remote attackers to conduct cross-site scripting (XSS) attacks to inject arb... |
| CVE-2012-2903 | — | — | 1.8% | May 21, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 7.0 and earlier allow remote attackers to inject... |
| CVE-2012-2902 | — | — | 1.0% | May 21, 2012 | Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the Joomla Content Editor (JCE) componen... |
| CVE-2012-2901 | — | — | 1.2% | May 21, 2012 | Cross-site scripting (XSS) vulnerability in the Profile List in the Joomla Content Editor (JCE) component before 2.1 for... |
| CVE-2012-2376 | — | — | 20.1% | May 21, 2012 | Buffer overflow in the com_print_typeinfo function in PHP 5.4.3 and earlier on Windows allows remote attackers to execut... |
| CVE-2012-2341 | — | — | 0.9% | May 18, 2012 | Cross-site request forgery (CSRF) vulnerability in the Take Control module 6.x-2.x before 6.x-2.2 for Drupal allows remo... |
| CVE-2012-2322 | — | — | 3.2% | May 18, 2012 | Integer overflow in the dhcpv6_get_option function in gdhcp/client.c in ConnMan before 0.85 allows remote attackers to c... |
| CVE-2012-2321 | — | — | 5.7% | May 18, 2012 | The loopback plug-in in ConnMan before 0.85 allows remote attackers to execute arbitrary commands via shell metacharacte... |
| CVE-2012-2320 | — | — | 2.5% | May 18, 2012 | ConnMan before 0.85 does not ensure that netlink messages originate from the kernel, which allows remote attackers to by... |
| CVE-2012-2120 | — | — | 0.3% | May 18, 2012 | latex2man in texlive-extra-utils 2011.20120322, and possibly other versions or packages, when used with the H or T optio... |
| CVE-2012-2118 | — | — | 2.7% | May 18, 2012 | Format string vulnerability in the LogVHdrMessageVerb function in os/log.c in X.Org X11 1.11 allows attackers to cause a... |
| CVE-2012-2093 | — | — | 0.4% | May 18, 2012 | src/common/latex.py in Gajim 0.15 allows local users to overwrite arbitrary files via a symlink attack on a temporary la... |
| CVE-2012-2010 | — | — | 0.4% | May 18, 2012 | The ACMELOGIN implementation in HP OpenVMS 8.3 and 8.4 on the Alpha platform, and 8.3, 8.3-1H1, and 8.4 on the Itanium p... |
| CVE-2012-1589 | — | — | 1.4% | May 18, 2012 | Open redirect vulnerability in the Form API in Drupal 7.x before 7.13 allows remote attackers to redirect users to arbit... |
| CVE-2012-2411 | — | — | 5.2% | May 18, 2012 | Buffer overflow in RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, allows remote attacker... |
| CVE-2012-2406 | — | — | 4.6% | May 18, 2012 | RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, does not properly parse ASMRuleBook data ... |
| CVE-2012-2337 | — | — | 0.4% | May 18, 2012 | sudo 1.6.x and 1.7.x before 1.7.9p1, and 1.8.x before 1.8.4p5, does not properly support configurations that use a netma... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now