2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1182 | — | — | 74.0% | Apr 10, 2012 | The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement valida... |
| CVE-2012-0177 | — | — | 30.1% | Apr 10, 2012 | Heap-based buffer overflow in the Office Works File Converter in Microsoft Office 2007 SP2, Works 9, and Works 6-9 File ... |
| CVE-2012-0172 | — | — | 21.9% | Apr 10, 2012 | Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2012-0171 | — | — | 27.1% | Apr 10, 2012 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2012-0170 | — | — | 22.4% | Apr 10, 2012 | Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute... |
| CVE-2012-0169 | — | — | 30.4% | Apr 10, 2012 | Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2012-0168 | — | — | 18.3% | Apr 10, 2012 | Microsoft Internet Explorer 6 through 9 allows user-assisted remote attackers to execute arbitrary code via a crafted HT... |
| CVE-2012-0163 | — | — | 38.3% | Apr 10, 2012 | Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameter... |
| CVE-2012-0147 | — | — | 35.6% | Apr 10, 2012 | Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 does not properly configure the default web s... |
| CVE-2012-0146 | — | — | 11.0% | Apr 10, 2012 | Open redirect vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 allows remote ... |
| CVE-2012-2215 | — | — | 28.3% | Apr 9, 2012 | Directory traversal vulnerability in the Preboot Service in Novell ZENworks Configuration Management (ZCM) 11.1 and 11.1... |
| CVE-2012-0742 | — | — | 0.3% | Apr 9, 2012 | IBM Tivoli Event Pump 4.2.2, when the LOG_REQUESTS and VALIDATE_SOAP_USERS options are enabled, places credentials into ... |
| CVE-2012-0725 | — | — | 2.0% | Apr 6, 2012 | Adobe Flash Player before 11.2.202.229 in Google Chrome before 18.0.1025.151 allow attackers to cause a denial of servic... |
| CVE-2012-0724 | — | — | 2.0% | Apr 6, 2012 | Adobe Flash Player before 11.2.202.229 in Google Chrome before 18.0.1025.151 allow attackers to cause a denial of servic... |
| CVE-2012-1902 | — | — | 2.1% | Apr 6, 2012 | show_config_errors.php in phpMyAdmin 3.4.x before 3.4.10.2, when a configuration file does not exist, allows remote atta... |
| CVE-2012-1239 | — | — | 4.7% | Apr 6, 2012 | The TopAccess web-based management interface on TOSHIBA TEC e-Studio multi-function peripheral (MFP) devices with firmwa... |
| CVE-2012-1238 | — | — | 1.2% | Apr 6, 2012 | Session fixation vulnerability in SENCHA SNS before 1.0.2 allows remote attackers to hijack web sessions via unspecified... |
| CVE-2012-1237 | — | — | 0.6% | Apr 6, 2012 | Cross-site request forgery (CSRF) vulnerability in SENCHA SNS before 1.0.2 allows remote attackers to hijack the authent... |
| CVE-2012-2054 | — | — | 2.1% | Apr 5, 2012 | Redmine before 1.3.2 does not properly restrict the use of a hash to provide values for a model's attributes, which allo... |
| CVE-2012-2053 | — | — | 0.5% | Apr 5, 2012 | The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 does not require a passw... |
| CVE-2012-1982 | — | — | 0.8% | Apr 5, 2012 | Cross-site scripting (XSS) vulnerability in my_admin/admin1_list_pages.php in SocialCMS 1.0.2 and earlier allows remote ... |
| CVE-2012-1777 | — | — | 2.3% | Apr 5, 2012 | SQL injection vulnerability in my.activation.php3 in F5 FirePass 6.0.0 through 6.1.0 and 7.0.0 allows remote attackers t... |
| CVE-2012-0327 | — | — | 1.8% | Apr 5, 2012 | Cross-site scripting (XSS) vulnerability in Redmine before 1.3.2 allows remote attackers to inject arbitrary web script ... |
| CVE-2012-0131 | — | — | 7.5% | Apr 5, 2012 | Distributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a d... |
| CVE-2012-0255 | — | — | 3.5% | Apr 5, 2012 | The BGP implementation in bgpd in Quagga before 0.99.20.1 does not properly use message buffers for OPEN messages, which... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now