2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-5696 | — | — | 1.3% | Oct 20, 2014 | Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, ... |
| CVE-2012-5695 | — | — | 0.7% | Oct 20, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 thr... |
| CVE-2012-5694 | — | — | 1.3% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allow remote att... |
| CVE-2012-5866 | — | — | 1.2% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in include.php in Achievo 1.4.5 allows remote attackers to inject arbitrary web... |
| CVE-2012-5865 | — | — | 1.1% | Oct 20, 2014 | SQL injection vulnerability in dispatch.php in Achievo 1.4.5 allows remote authenticated users to execute arbitrary SQL ... |
| CVE-2012-5701 | — | — | 0.7% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute a... |
| CVE-2012-5244 | — | — | 1.5% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in Banana Dance B.2.6 and earlier allow remote attackers to execute arbitrary SQL... |
| CVE-2012-2413 | — | — | 1.2% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in the ja_purity template for Joomla! 1.5.26 and earlier allows remote attacker... |
| CVE-2012-0811 | — | — | 1.7% | Oct 1, 2014 | Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users... |
| CVE-2012-6316 | — | — | 0.8% | Sep 30, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the TP-LINK TL-WR841N router with firmware 3.13.9 Build 120201 Re... |
| CVE-2012-5507 | — | — | 0.9% | Sep 30, 2014 | AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote... |
| CVE-2012-5506 | — | — | 1.6% | Sep 30, 2014 | python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to cause a denial of service (infi... |
| CVE-2012-5505 | — | — | 1.4% | Sep 30, 2014 | atat.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read private data structures via a reques... |
| CVE-2012-5504 | — | — | 1.2% | Sep 30, 2014 | Cross-site scripting (XSS) vulnerability in widget_traversal.py in Plone before 4.2.3 and 4.3 before beta 1 allows remot... |
| CVE-2012-5503 | — | — | 1.4% | Sep 30, 2014 | ftp.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read hidden folder contents via unspecifie... |
| CVE-2012-5502 | — | — | 1.0% | Sep 30, 2014 | Cross-site scripting (XSS) vulnerability in safe_html.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote authe... |
| CVE-2012-5501 | — | — | 1.4% | Sep 30, 2014 | at_download.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read arbitrary BLOBs (Files and Im... |
| CVE-2012-5499 | — | — | 2.4% | Sep 30, 2014 | python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to cause a denial of service (memo... |
| CVE-2012-5498 | — | — | 2.6% | Sep 30, 2014 | queryCatalog.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to bypass caching and cause a denial... |
| CVE-2012-5497 | — | — | 2.1% | Sep 30, 2014 | membership_tool.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to enumerate user account names v... |
| CVE-2012-5496 | — | — | 1.6% | Sep 30, 2014 | kupu_spellcheck.py in Kupu in Plone before 4.0 allows remote attackers to cause a denial of service (ZServer thread lock... |
| CVE-2012-5495 | — | — | 1.7% | Sep 30, 2014 | python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via a craft... |
| CVE-2012-5494 | — | — | 1.2% | Sep 30, 2014 | Cross-site scripting (XSS) vulnerability in python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote ... |
| CVE-2012-5493 | — | — | 1.7% | Sep 30, 2014 | gtbn.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote authenticated users with certain permissions to bypass... |
| CVE-2012-5492 | — | — | 1.4% | Sep 30, 2014 | uid_catalog.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to obtain metadata about hidden objec... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now