2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1025 | — | — | 6.2% | Feb 8, 2012 | Absolute path traversal vulnerability in file in Enigma2 Webinterface 1.6.0 through 1.6.8, 1.6rc3, and 1.7.0 allows remo... |
| CVE-2012-1024 | — | — | 3.6% | Feb 8, 2012 | Directory traversal vulnerability in file in Enigma2 Webinterface 1.5rc1 and 1.5beta4 allows remote attackers to read ar... |
| CVE-2012-1023 | — | — | 2.0% | Feb 8, 2012 | Open redirect vulnerability in admin/index.php in 4images 1.7.10 allows remote attackers to redirect users to arbitrary ... |
| CVE-2012-1022 | — | — | 1.1% | Feb 8, 2012 | SQL injection vulnerability in admin/categories.php in 4images 1.7.10 remote attackers to execute arbitrary SQL commands... |
| CVE-2012-1021 | — | — | 1.6% | Feb 8, 2012 | Cross-site scripting (XSS) vulnerability in admin/categories.php in 4images 1.7.10 allows remote attackers to inject arb... |
| CVE-2012-1020 | — | — | 1.2% | Feb 8, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in login.php in NexorONE Online Banking allow remote attackers to in... |
| CVE-2012-1019 | — | — | 1.2% | Feb 8, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in XWiki Enterprise 3.4 allow remote attackers to inject arbitrary w... |
| CVE-2012-1018 | — | — | 1.6% | Feb 8, 2012 | Cross-site scripting (XSS) vulnerability in includes/convert.php in D-Mack Media Currency Converter (mod_currencyconvert... |
| CVE-2012-1017 | — | — | 1.4% | Feb 8, 2012 | Multiple SQL injection vulnerabilities in base_qry_main.php in Basic Analysis and Security Engine (BASE) 1.4.5 allow rem... |
| CVE-2012-1011 | — | — | 9.6% | Feb 7, 2012 | actions.php in the AllWebMenus plugin 1.1.8 for WordPress allows remote attackers to bypass intended access restrictions... |
| CVE-2012-1010 | — | — | 9.5% | Feb 7, 2012 | Unrestricted file upload vulnerability in actions.php in the AllWebMenus plugin before 1.1.8 for WordPress allows remote... |
| CVE-2012-1005 | — | — | 1.6% | Feb 7, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Sphinx Software Mobile Web Server 3.1.2.47 allow remote attackers... |
| CVE-2012-0992 | — | — | 3.8% | Feb 7, 2012 | interface/fax/fax_dispatch.php in OpenEMR 4.1.0 allows remote authenticated users to execute arbitrary commands via shel... |
| CVE-2012-0991 | — | — | 11.3% | Feb 7, 2012 | Multiple directory traversal vulnerabilities in OpenEMR 4.1.0 allow remote authenticated users to read arbitrary files v... |
| CVE-2012-0990 | — | — | 1.0% | Feb 7, 2012 | Cross-site request forgery (CSRF) vulnerability in admin/settings/update in DClassifieds 0.1 final allows remote attacke... |
| CVE-2012-1007 | — | — | 33.7% | Feb 7, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 1.3.10 allow remote attackers to inject arbitrary w... |
| CVE-2012-1006 | — | — | 58.5% | Feb 7, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.0.14 and 2.2.3 allow remote attackers to inject a... |
| CVE-2012-1003 | — | — | 1.2% | Feb 7, 2012 | Multiple integer overflows in Opera 11.60 and earlier allow remote attackers to cause a denial of service (application c... |
| CVE-2012-0830 | — | — | 30.1% | Feb 6, 2012 | The php_register_variable_ex function in php_variables.c in PHP 5.3.9 allows remote attackers to execute arbitrary code ... |
| CVE-2012-0396 | — | — | 1.1% | Feb 6, 2012 | EMC Documentum xPlore 1.0, 1.1 before P07, and 1.2 does not properly enforce the requirement for BROWSE permission, whic... |
| CVE-2012-0290 | — | — | 2.7% | Feb 6, 2012 | Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x... |
| CVE-2012-0194 | — | — | 3.0% | Feb 6, 2012 | The TCP implementation in IBM AIX 5.3, 6.1, and 7.1, when the Large Send Offload option is enabled, allows remote attack... |
| CVE-2012-0314 | — | — | 0.6% | Feb 3, 2012 | Multiple cross-site request forgery (CSRF) vulnerabilities on the eAccess Pocket WiFi (aka GP02) router before 2.00 with... |
| CVE-2012-0448 | — | — | 1.0% | Feb 2, 2012 | Bugzilla 2.x and 3.x before 3.4.14, 3.5.x and 3.6.x before 3.6.8, 3.7.x and 4.0.x before 4.0.4, and 4.1.x and 4.2.x befo... |
| CVE-2012-0440 | — | — | 0.6% | Feb 2, 2012 | Cross-site request forgery (CSRF) vulnerability in jsonrpc.cgi in Bugzilla 3.5.x and 3.6.x before 3.6.8, 3.7.x and 4.0.x... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now