2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-2403wp-includes/formatting.php in WordPress before 3.3.2 attempts to enable clickable links inside attributes, which makes i...
CVE-2012-2402wp-admin/plugins.php in WordPress before 3.3.2 allows remote authenticated site administrators to bypass intended access...
CVE-2012-2401Plupload before 1.5.4, as used in wp-includes/js/plupload/ in WordPress before 3.3.2 and other products, enables scripti...
CVE-2012-2400Unspecified vulnerability in wp-includes/js/swfobject.js in WordPress before 3.3.2 has unknown impact and attack vectors...
CVE-2012-2399Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFupload 2.2.0.1 and earlier, as used in WordPress before ...
CVE-2012-2398Cross-site scripting (XSS) vulnerability in files/ajax/download.php in ownCloud before 3.0.3 allows remote attackers to ...
CVE-2012-2397Cross-site request forgery (CSRF) vulnerability in ownCloud before 3.0.3 allows remote attackers to hijack the authentic...
CVE-2012-2270Open redirect vulnerability in index.php (aka the Login Page) in ownCloud before 3.0.3 allows remote attackers to redire...
CVE-2012-2269Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 3.0.3 allow remote attackers to inject arbitrary ...
CVE-2012-2236SQL injection vulnerability in users.php in PHP Gift Registry 1.5.5 allows remote authenticated users to execute arbitra...
CVE-2012-2273Comodo Internet Security before 5.10.228257.2253 on Windows 7 x64 allows local users to cause a denial of service (syste...
CVE-2012-0407Integer overflow in the DPA_Utilities library in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote att...
CVE-2012-0406The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows re...
CVE-2012-2396VideoLAN VLC media player 2.0.1 allows remote attackers to cause a denial of service (divide-by-zero error and applicati...
CVE-2012-0134Unspecified vulnerability in HP OpenVMS 7.3-2 on the Alpha platform, 8.3 and 8.4 on the Alpha and IA64 platforms, and 8....
CVE-2012-2110The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in OpenSSL before 0.9.8v, 1.0.0 before 1.0.0i, and 1.0.1 before...
CVE-2012-0253Multiple cross-site scripting (XSS) vulnerabilities in Demand Media Pluck SiteLife before 5.0.13 allow remote attackers ...
CVE-2012-1993Unspecified vulnerability in HP System Management Homepage (SMH) before 7.0 allows local users to modify data or obtain ...
CVE-2012-1802Buffer overflow in the embedded web server on the Siemens Scalance X Industrial Ethernet switch X414-3E before 3.7.1, X3...
CVE-2012-1801Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink ...
CVE-2012-1800Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewa...
CVE-2012-1799The web server on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3...
CVE-2012-0883envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_P...
CVE-2012-0278Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute a...
CVE-2012-0135Unspecified vulnerability in HP System Management Homepage (SMH) before 7.0 allows remote authenticated users to cause a...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now