2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-10043 | CRITICAL | 9.3 | 0.3% | Aug 8, 2025 | A stack-based buffer overflow vulnerability exists in ActFax Server version 4.32, specifically in the "Import Users from... |
| CVE-2012-10042 | HIGH | 8.7 | 0.9% | Aug 8, 2025 | Sflog! CMS 1.0 contains an authenticated arbitrary file upload vulnerability in the blog management interface. The appli... |
| CVE-2012-10041 | CRITICAL | 9.3 | 2.9% | Aug 8, 2025 | WAN Emulator v2.3 contains two unauthenticated command execution vulnerabilities. The result.php script calls shell_exec... |
| CVE-2012-10036 | CRITICAL | 9.3 | 1.5% | Aug 8, 2025 | Project Pier 0.8.8 and earlier contains an unauthenticated arbitrary file upload vulnerability in tools/upload_file.php.... |
| CVE-2012-10035 | CRITICAL | 10 | 1.0% | Aug 5, 2025 | Turbo FTP Server versions 1.30.823 and 1.30.826 contain a buffer overflow vulnerability in the handling of the PORT comm... |
| CVE-2012-10034 | HIGH | 7.5 | 1.3% | Aug 5, 2025 | ClanSphere 2011.3 is vulnerable to a local file inclusion (LFI) flaw due to improper handling of the cs_lang cookie para... |
| CVE-2012-10033 | CRITICAL | 9.3 | 1.1% | Aug 5, 2025 | Narcissus is vulnerable to remote code execution via improper input handling in its image configuration workflow. Specif... |
| CVE-2012-10032 | HIGH | 8.7 | 0.8% | Aug 5, 2025 | Maxthon3 version 3.2.2 build 1000 and prior are vulnerable to cross context scripting (XCS) via the about:history page. ... |
| CVE-2012-10031 | HIGH | 8.6 | 0.8% | Aug 5, 2025 | BlazeVideo HDTV Player Pro v6.6.0.3 is vulnerable to a stack-based buffer overflow due to improper handling of user-supp... |
| CVE-2012-10030 | CRITICAL | 9.8 | 1.5% | Aug 5, 2025 | FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote attackers to upload arbit... |
| CVE-2012-10029 | HIGH | 8.6 | 2.6% | Aug 5, 2025 | Nagios XI Network Monitor prior to Graph Explorer component version 1.3 contains a command injection vulnerability in `v... |
| CVE-2012-10028 | HIGH | 8.6 | 0.9% | Aug 5, 2025 | Netwin SurgeFTP version 23c8 and prior contains a vulnerability in its web-based administrative console that allows auth... |
| CVE-2012-10027 | CRITICAL | 9.3 | 1.6% | Aug 5, 2025 | WP-Property plugin for WordPress up to and including version 1.35.0 contains an unauthenticated file upload vulnerabilit... |
| CVE-2012-10026 | CRITICAL | 10 | 1.1% | Aug 5, 2025 | The WordPress plugin Asset-Manager version 2.0 and below contains an unauthenticated arbitrary file upload vulnerability... |
| CVE-2012-10025 | CRITICAL | 10 | 1.2% | Aug 5, 2025 | The WordPress plugin Advanced Custom Fields (ACF) version 3.5.1 and below contains a remote file inclusion (RFI) vulnera... |
| CVE-2012-10024 | HIGH | 7.1 | 1.1% | Aug 5, 2025 | XBMC version 11.0 contains a path traversal vulnerability in its embedded HTTP server. When accessed via HTTP Basic Auth... |
| CVE-2012-10023 | CRITICAL | 9.8 | 1.7% | Aug 5, 2025 | A stack-based buffer overflow vulnerability exists in FreeFloat FTP Server version 1.0.0. The server fails to properly v... |
| CVE-2012-10022 | HIGH | 8.5 | 0.4% | Aug 1, 2025 | Kloxo versions 6.1.12 and earlier contain two setuid root binaries—lxsuexec and lxrestart—that allow local privilege esc... |
| CVE-2012-10021 | CRITICAL | 9.8 | 3.0% | Jul 31, 2025 | A stack-based buffer overflow vulnerability exists in D-Link DIR-605L Wireless N300 Cloud Router firmware versions 1.12 ... |
| CVE-2012-10020 | CRITICAL | 9.8 | 2.9% | Jul 22, 2025 | The FoxyPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the up... |
| CVE-2012-10019 | CRITICAL | 9.8 | 2.3% | Jul 19, 2025 | The Front End Editor plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation vi... |
| CVE-2012-10018 | HIGH | 8.3 | 1.1% | Oct 16, 2024 | The Mapplic and Mapplic Lite plugins for WordPress are vulnerable to Server-Side Request Forgery in versions up to, and ... |
| CVE-2012-6664 | CRITICAL | 9.1 | 29.5% | Jun 21, 2024 | Multiple directory traversal vulnerabilities in the TFTP Server in Distinct Intranet Servers 3.10 and earlier allow remo... |
| CVE-2012-10017 | HIGH | 8.8 | 0.4% | Dec 26, 2023 | A vulnerability was found in BestWebSoft Portfolio Plugin up to 2.04 on WordPress. It has been classified as problematic... |
| CVE-2012-10016 | HIGH | 7.5 | 0.6% | Oct 17, 2023 | A vulnerability classified as problematic has been found in Halulu simple-download-button-shortcode Plugin 1.0 on WordPr... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now