2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-0983 | — | — | 1.1% | Feb 2, 2012 | SQL injection vulnerability in Scriptsez.net Ez Album allows remote attackers to execute arbitrary SQL commands via the ... |
| CVE-2012-0982 | — | — | 1.1% | Feb 2, 2012 | SQL injection vulnerability in search.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attacke... |
| CVE-2012-0981 | — | — | 11.1% | Feb 2, 2012 | Directory traversal vulnerability in phpShowtime 2.0 allows remote attackers to list arbitrary directories and image fil... |
| CVE-2012-0980 | — | — | 1.1% | Feb 2, 2012 | SQL injection vulnerability in download.php in phux Download Manager allows remote attackers to execute arbitrary SQL co... |
| CVE-2012-0979 | — | — | 2.1% | Feb 2, 2012 | Cross-site scripting (XSS) vulnerability in TWiki allows remote attackers to inject arbitrary web script or HTML via the... |
| CVE-2012-0978 | — | — | 2.7% | Feb 2, 2012 | Stack-based buffer overflow in npjp2.dll in LuraWave JP2 Browser Plug-In 1.1.1.11 and other versions before 2.1.1.11 all... |
| CVE-2012-0977 | — | — | 5.2% | Feb 2, 2012 | Stack-based buffer overflow in jp2_x.dll in LuraWave JP2 ActiveX Control 2.1.5.5 and other versions before 2.1.5.11 allo... |
| CVE-2012-0976 | — | — | 1.9% | Feb 2, 2012 | Cross-site scripting (XSS) vulnerability in admin/EditForm in SilverStripe 2.4.6 allows remote authenticated users with ... |
| CVE-2012-0975 | — | — | 1.2% | Feb 2, 2012 | Cross-site scripting (XSS) vulnerability in misc.php in Image Hosting Script DPI 1.0, 1.3, and earlier allows remote att... |
| CVE-2012-0057 | — | — | 3.1% | Feb 2, 2012 | PHP before 5.3.9 has improper libxslt security settings, which allows remote attackers to create arbitrary files via a c... |
| CVE-2012-0450 | — | — | 0.3% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0 and SeaMonkey before 2.7 on Linux and Mac OS X set weak permissions for Firefox Recovery... |
| CVE-2012-0449 | — | — | 5.8% | Feb 1, 2012 | Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2... |
| CVE-2012-0447 | — | — | 1.9% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize data f... |
| CVE-2012-0446 | — | — | 1.6% | Feb 1, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and... |
| CVE-2012-0445 | — | — | 2.1% | Feb 1, 2012 | Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to bypass ... |
| CVE-2012-0444 | — | — | 7.9% | Feb 1, 2012 | Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2... |
| CVE-2012-0443 | — | — | 4.4% | Feb 1, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9... |
| CVE-2012-0442 | — | — | 4.6% | Feb 1, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunder... |
| CVE-2012-0809 | — | — | 3.0% | Feb 1, 2012 | Format string vulnerability in the sudo_debug function in Sudo 1.8.0 through 1.8.3p1 allows local users to execute arbit... |
| CVE-2012-0937 | — | — | 8.1% | Jan 30, 2012 | wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQ... |
| CVE-2012-0817 | — | — | 3.5% | Jan 30, 2012 | Memory leak in smbd in Samba 3.6.x before 3.6.3 allows remote attackers to cause a denial of service (memory and CPU con... |
| CVE-2012-0782 | — | — | 3.8% | Jan 30, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup-config.php in the installation component in WordPr... |
| CVE-2012-0936 | — | — | 2.2% | Jan 29, 2012 | Cross-site scripting (XSS) vulnerability in web/springframework/security/SecurityAuthenticationEventOnmsEventBuilder.jav... |
| CVE-2012-0935 | — | — | 1.1% | Jan 29, 2012 | SQL injection vulnerability in Default.aspx in Aryadad CMS allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2012-0934 | — | — | 8.1% | Jan 29, 2012 | PHP remote file inclusion vulnerability in ajax/savetag.php in the Theme Tuner plugin for WordPress before 0.8 allows re... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now