2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1621 | — | — | 9.8% | Jun 19, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Open For Business Project (aka OFBiz) 10.04.x before 10.04... |
| CVE-2012-2592 | — | — | 1.8% | Jun 18, 2014 | Cross-site scripting (XSS) vulnerability in Axigen Mail Server 8.0.1 allows remote attackers to inject arbitrary web scr... |
| CVE-2012-3522 | — | — | 1.2% | Jun 13, 2014 | Cross-site scripting (XSS) vulnerability in contrib/langwiz.php in GeSHi before 1.0.8.11 allows remote attackers to inje... |
| CVE-2012-3521 | — | — | 3.2% | Jun 13, 2014 | Multiple directory traversal vulnerabilities in the cssgen contrib module in GeSHi before 1.0.8.11 allow remote attacker... |
| CVE-2012-5583 | — | — | 0.6% | Jun 6, 2014 | phpCAS before 1.3.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or ... |
| CVE-2012-5390 | — | — | 2.5% | Jun 6, 2014 | The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 ... |
| CVE-2012-4728 | — | — | 3.0% | Jun 5, 2014 | The (1) QProGetNotebookWindowHandle and (2) Ordinal132 functions in QPW160.dll in Corel Quattro Pro X6 Standard Edition ... |
| CVE-2012-6143 | — | — | 2.8% | Jun 4, 2014 | Spoon::Cookie in the Spoon module 0.24 for Perl does not properly use the Storable::thaw function, which allows remote a... |
| CVE-2012-6142 | — | — | 2.7% | Jun 4, 2014 | Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows r... |
| CVE-2012-6141 | — | — | 2.3% | Jun 4, 2014 | The App::Context module 0.01 through 0.968 for Perl does not properly use the Storable::thaw function, which allows remo... |
| CVE-2012-5336 | — | — | 1.0% | Jun 4, 2014 | lib/base.php in ownCloud before 4.0.8 does not properly validate the user_id session variable, which allows remote authe... |
| CVE-2012-5057 | — | — | 1.0% | Jun 4, 2014 | CRLF injection vulnerability in ownCloud Server before 4.0.8 allows remote attackers to inject arbitrary HTTP headers an... |
| CVE-2012-5056 | — | — | 1.0% | Jun 4, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in ownCloud Server before 4.0.8 allow remote attackers to inject arb... |
| CVE-2012-5395 | — | — | 1.2% | Jun 2, 2014 | Session fixation vulnerability in the CentralAuth extension for MediaWiki before 1.18.6, 1.19.x before 1.19.3, and 1.20.... |
| CVE-2012-5391 | — | — | 2.3% | Jun 2, 2014 | Session fixation vulnerability in Special:UserLogin in MediaWiki before 1.18.6, 1.19.x before 1.19.3, and 1.20.x before ... |
| CVE-2012-5877 | — | — | 7.7% | May 30, 2014 | Nero MediaHome 4.5.8.0 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and cr... |
| CVE-2012-5876 | — | — | 4.3% | May 30, 2014 | Multiple off-by-one errors in NMMediaServerService.dll in Nero MediaHome 4.5.8.0 and earlier allow remote attackers to c... |
| CVE-2012-5572 | — | — | 1.5% | May 30, 2014 | CRLF injection vulnerability in the cookie method (lib/Dancer/Cookie.pm) in Dancer before 1.3114 allows remote attackers... |
| CVE-2012-5560 | — | — | 0.4% | May 30, 2014 | The default configuration in mate-settings-daemon 1.5.3 allows local users to change the timezone for the system via a c... |
| CVE-2012-4915 | — | — | 50.0% | May 29, 2014 | Directory traversal vulnerability in the Google Doc Embedder plugin before 2.5.4 for WordPress allows remote attackers t... |
| CVE-2012-6452 | — | — | 1.5% | May 27, 2014 | Axway Secure Messenger before 6.5 Updated Release 7, as used in Axway Email Firewall, provides different responses to au... |
| CVE-2012-5662 | — | — | 0.6% | May 27, 2014 | x3270 before 3.3.12ga12 does not verify that the server hostname matches a domain name in the subject's Common Name (CN)... |
| CVE-2012-6647 | — | — | 0.4% | May 26, 2014 | The futex_wait_requeue_pi function in kernel/futex.c in the Linux kernel before 3.5.1 does not ensure that calls have tw... |
| CVE-2012-3333 | — | — | 1.8% | May 26, 2014 | CRLF injection vulnerability in IBM Maximo Asset Management 7.x before 7.5.0.6 and SmartCloud Control Desk 7.x before 7.... |
| CVE-2012-5649 | — | — | 6.6% | May 23, 2014 | Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1 allows remote attackers to execute arbitrary cod... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now