2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2012-0785HIGH7.5Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by Cloud...
CVE-2012-1093HIGH7.8The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a pr...
CVE-2012-6277HIGH7.8Multiple unspecified vulnerabilities in Autonomy KeyView IDOL before 10.16, as used in Symantec Mail Security for Micros...
CVE-2012-0063HIGH8.1Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attac...
CVE-2012-5366HIGH7.5The IPv6 implementation in Apple Mac OS X (unknown versions, year 2012 and earlier) allows remote attackers to cause a d...
CVE-2012-5365HIGH7.5The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause...
CVE-2012-5364HIGH7.5The IPv6 implementation in Microsoft Windows 7 and earlier allows remote attackers to cause a denial of service via a fl...
CVE-2012-5363HIGH7.5The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause...
CVE-2012-5362HIGH7.5The IPv6 implementation in Microsoft Windows 7 and earlier allows remote attackers to cause a denial of service via a fl...
CVE-2012-2629HIGH8.8Multiple cross-site request forgery (CSRF) and cross-site scripting (XSS) vulnerabilities in Axous 1.1.1 and earlier all...
CVE-2012-0055HIGH7.8OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security chec...
CVE-2012-6685HIGH7.5Nokogiri before 1.5.4 is vulnerable to XXE attacks
CVE-2012-6614HIGH7.2D-Link DSR-250N devices before 1.08B31 allow remote authenticated users to obtain "persistent root access" via the BusyB...
CVE-2012-6091HIGH7.5Zend_XmlRpc Class in Magento before 1.7.0.2 contains an information disclosure vulnerability.
CVE-2012-5623HIGH7.5Squirrelmail 4.0 uses the outdated MD5 hash algorithm for passwords.
CVE-2012-0951HIGH7.8A Memory Corruption Vulnerability exists in NVIDIA Graphics Drivers 29549 due to an unknown function in the file proc/dr...
CVE-2012-4512HIGH8.8The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service ...
CVE-2012-4381HIGH8.1MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local database, (1) which could make it easier ...
CVE-2012-1567HIGH7.5LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintUpdate.
CVE-2012-1566HIGH7.5LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintNanny.
CVE-2012-6309HIGH7.5A vulnerability exists in Arctic Torrent 1.4 via unspecified vectors in .torrent file handling, which could let a malici...
CVE-2012-6307HIGH8.8A vulnerability exists in JPEGsnoop 1.5.2 due to an unspecified issue in JPEG file handling, which could let a malicious...
CVE-2012-6297HIGH8.8Command Injection vulnerability exists via a CSRF in DD-WRT 24-sp2 from specially crafted configuration values containin...
CVE-2012-4383HIGH8.8contao prior to 2.11.4 has a sql injection vulnerability
CVE-2012-6610HIGH8.8Polycom HDX Video End Points before 3.0.4 and UC APL before 2.7.1.J allows remote authenticated users to execute arbitra...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now