2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-0977 | — | — | 5.2% | Feb 2, 2012 | Stack-based buffer overflow in jp2_x.dll in LuraWave JP2 ActiveX Control 2.1.5.5 and other versions before 2.1.5.11 allo... |
| CVE-2012-0976 | — | — | 1.9% | Feb 2, 2012 | Cross-site scripting (XSS) vulnerability in admin/EditForm in SilverStripe 2.4.6 allows remote authenticated users with ... |
| CVE-2012-0975 | — | — | 1.2% | Feb 2, 2012 | Cross-site scripting (XSS) vulnerability in misc.php in Image Hosting Script DPI 1.0, 1.3, and earlier allows remote att... |
| CVE-2012-0057 | — | — | 3.1% | Feb 2, 2012 | PHP before 5.3.9 has improper libxslt security settings, which allows remote attackers to create arbitrary files via a c... |
| CVE-2012-0450 | — | — | 0.3% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0 and SeaMonkey before 2.7 on Linux and Mac OS X set weak permissions for Firefox Recovery... |
| CVE-2012-0449 | — | — | 5.8% | Feb 1, 2012 | Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2... |
| CVE-2012-0447 | — | — | 1.9% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize data f... |
| CVE-2012-0446 | — | — | 1.6% | Feb 1, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and... |
| CVE-2012-0445 | — | — | 2.1% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to bypass ... |
| CVE-2012-0444 | — | — | 7.9% | Feb 1, 2012 | Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2... |
| CVE-2012-0443 | — | — | 4.4% | Feb 1, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9... |
| CVE-2012-0442 | — | — | 4.6% | Feb 1, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunder... |
| CVE-2012-0809 | — | — | 3.0% | Feb 1, 2012 | Format string vulnerability in the sudo_debug function in Sudo 1.8.0 through 1.8.3p1 allows local users to execute arbit... |
| CVE-2012-0937 | — | — | 8.1% | Jan 30, 2012 | wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQ... |
| CVE-2012-0817 | — | — | 3.5% | Jan 30, 2012 | Memory leak in smbd in Samba 3.6.x before 3.6.3 allows remote attackers to cause a denial of service (memory and CPU con... |
| CVE-2012-0782 | — | — | 3.8% | Jan 30, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup-config.php in the installation component in WordPr... |
| CVE-2012-0936 | — | — | 2.2% | Jan 29, 2012 | Cross-site scripting (XSS) vulnerability in web/springframework/security/SecurityAuthenticationEventOnmsEventBuilder.jav... |
| CVE-2012-0935 | — | — | 1.1% | Jan 29, 2012 | SQL injection vulnerability in Default.aspx in Aryadad CMS allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2012-0934 | — | — | 8.1% | Jan 29, 2012 | PHP remote file inclusion vulnerability in ajax/savetag.php in the Theme Tuner plugin for WordPress before 0.8 allows re... |
| CVE-2012-0933 | — | — | 4.0% | Jan 29, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Acidcat CMS 3.5.1, 3.5.2, 3.5.6, and possibly earlier allow remot... |
| CVE-2012-0932 | — | — | 1.6% | Jan 29, 2012 | Cross-site scripting (XSS) vulnerability in admin/login.php in Lead Capture Page System allows remote attackers to injec... |
| CVE-2012-0053 | — | — | 82.8% | Jan 28, 2012 | protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construct... |
| CVE-2012-0021 | — | — | 30.8% | Jan 28, 2012 | The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21... |
| CVE-2012-0056 | — | — | 10.9% | Jan 27, 2012 | The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when... |
| CVE-2012-0029 | — | — | 0.9% | Jan 27, 2012 | Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and pos... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now