2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1070 | — | — | 1.1% | Feb 14, 2012 | Cross-site scripting (XSS) vulnerability in the Modern FAQ (irfaq) extension 1.1.2 and other versions before 1.1.4 for T... |
| CVE-2012-1069 | — | — | 1.6% | Feb 14, 2012 | Cross-site scripting (XSS) vulnerability in module/kb/search_word in the search module in lknSupport allows remote attac... |
| CVE-2012-1068 | — | — | 2.1% | Feb 14, 2012 | Cross-site scripting (XSS) vulnerability in the rc_ajax function in core.php in the WP-RecentComments plugin before 2.0.... |
| CVE-2012-1067 | — | — | 2.1% | Feb 14, 2012 | SQL injection vulnerability in the WP-RecentComments plugin 2.0.7 for WordPress allows remote attackers to execute arbit... |
| CVE-2012-1066 | — | — | 1.2% | Feb 14, 2012 | Cross-site scripting (XSS) vulnerability in the template module in SmartyCMS 0.9.4 allows remote attackers to inject arb... |
| CVE-2012-1065 | — | — | 4.0% | Feb 14, 2012 | Insecure method vulnerability in TuxScripting.dll in the TuxSystem ActiveX control in 2X ApplicationServer 10.1 Build 12... |
| CVE-2012-1009 | — | — | 3.0% | Feb 14, 2012 | NetSarang Xlpd 4 Build 0100 and NetSarang Xmanager Enterprise 4 Build 0186 allow remote attackers to cause a denial of s... |
| CVE-2012-0789 | — | — | 8.3% | Feb 14, 2012 | Memory leak in the timezone functionality in PHP before 5.3.9 allows remote attackers to cause a denial of service (memo... |
| CVE-2012-0788 | — | — | 9.0% | Feb 14, 2012 | The PDORow implementation in PHP before 5.3.9 does not properly interact with the session feature, which allows remote a... |
| CVE-2012-1063 | — | — | 1.3% | Feb 14, 2012 | Multiple SQL injection vulnerabilities in ManageEngine Applications Manager 9.x and 10.x allow remote attackers to execu... |
| CVE-2012-1062 | — | — | 1.4% | Feb 14, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine Applications Manager 9.x and 10.x allow remote attac... |
| CVE-2012-1061 | — | — | 1.2% | Feb 14, 2012 | SQL injection vulnerability in GForge Advanced Server 6.0.0 and other versions before 6.0.1 allows remote attackers to e... |
| CVE-2012-1060 | — | — | 1.1% | Feb 14, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in revisioning_theme.inc in the Taxonomy module in the Revisioning m... |
| CVE-2012-1059 | — | — | 3.5% | Feb 14, 2012 | Cross-site scripting (XSS) vulnerability in osCommerce/OM/Core/Site/Shop/Application/Cart/pages/main.php in OSCommerce O... |
| CVE-2012-1058 | — | — | 0.9% | Feb 14, 2012 | Cross-site request forgery (CSRF) vulnerability in Flyspray 0.9.9.6 allows remote attackers to hijack the authentication... |
| CVE-2012-1057 | — | — | 0.6% | Feb 14, 2012 | Cross-site request forgery (CSRF) vulnerability in the clickthrough tracking functionality in the Forward module 6.x-1.x... |
| CVE-2012-1056 | — | — | 1.5% | Feb 14, 2012 | The Forward module 6.x-1.x before 6.x-1.21 and 7.x-1.x before 7.x-1.3 for Drupal does not properly enforce permissions f... |
| CVE-2012-1055 | — | — | 2.7% | Feb 14, 2012 | Heap-based buffer overflow in PhotoLine 17.01 and possibly other versions before 17.02 allows remote attackers to execut... |
| CVE-2012-0829 | — | — | 0.7% | Feb 14, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities in Mibew Messenger 1.6.4 and earlier allow remote attackers t... |
| CVE-2012-0340 | — | — | 0.6% | Feb 13, 2012 | Cross-site scripting (XSS) vulnerability in the management interface on the Cisco IronPort Encryption Appliance with sof... |
| CVE-2012-1052 | — | — | 2.7% | Feb 13, 2012 | Buffer overflow in IvanView 1.2.15 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a cr... |
| CVE-2012-1051 | — | — | 2.7% | Feb 13, 2012 | Heap-based buffer overflow in Xjp2.dll in the JPEG2000 plug-in in XnView 1.98.5 allows remote attackers to execute arbit... |
| CVE-2012-1050 | — | — | 3.5% | Feb 13, 2012 | Directory traversal vulnerability in Mathopd 1.4.x and 1.5.x before 1.5p7, when configured with the * construct for mass... |
| CVE-2012-1049 | — | — | 1.6% | Feb 13, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine ADManager Plus 5.2 Build 5210 allow remote attackers... |
| CVE-2012-1048 | — | — | 1.6% | Feb 12, 2012 | Cross-site scripting (XSS) vulnerability in communityplusplus/www/administrator.php in eFront Community++ edition 3.6.10... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now