2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-0933Multiple cross-site scripting (XSS) vulnerabilities in Acidcat CMS 3.5.1, 3.5.2, 3.5.6, and possibly earlier allow remot...
CVE-2012-0932Cross-site scripting (XSS) vulnerability in admin/login.php in Lead Capture Page System allows remote attackers to injec...
CVE-2012-0053protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construct...
CVE-2012-0021The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21...
CVE-2012-0931CRITICAL9.8Schneider Electric Modicon Quantum PLC does not perform authentication between the Unity software and PLC, which allows ...
CVE-2012-0930MEDIUM6.1Cross-site scripting (XSS) vulnerability in Schneider Electric Modicon Quantum PLC allows remote attackers to inject arb...
CVE-2012-0929HIGH7.5Multiple buffer overflows in Schneider Electric Modicon Quantum PLC allow remote attackers to cause a denial of service ...
CVE-2012-0814MEDIUM6.5The auth_parse_options function in auth-options.c in sshd in OpenSSH before 5.7 provides debug messages containing autho...
CVE-2012-0056The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when...
CVE-2012-0029Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and pos...
CVE-2012-0807Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature i...
CVE-2012-0806Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors in...
CVE-2012-0395Buffer overflow in the server in EMC NetWorker 7.5.x and 7.6.x before 7.6.3 SP1 Cumulative Release build 851 allows remo...
CVE-2012-0312Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9, and osCommerce Online Merchant before 2.3.1, a...
CVE-2012-0311Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9 allows remote attackers to inject arbitrary web...
CVE-2012-0885chan_sip.c in Asterisk Open Source 1.8.x before 1.8.8.2 and 10.x before 10.0.1, when the res_srtp module is used and med...
CVE-2012-0919Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Director 02-50-01 through 02-50-07, 03-00 through 03-0...
CVE-2012-0918Unspecified vulnerability in Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite 01-00, 01-01 throug...
CVE-2012-0917Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Analyzer 02-01, 02-51 through 02-51-01, and 02-53 thro...
CVE-2012-0916Heap-based buffer overflow in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via a crafted image in a...
CVE-2012-0915Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of ...
CVE-2012-0914Cross-site scripting (XSS) vulnerability in display_renderers/panels_renderer_editor.class.php in the admin view in the ...
CVE-2012-0913SQL injection vulnerability in checklogin.aspx in ICloudCenter ICTimeAttendance 1.0 allows remote attackers to execute a...
CVE-2012-0909Cross-site scripting (XSS) vulnerability in Horde_Form in Horde Groupware Webmail Edition before 4.0.6 allows remote att...
CVE-2012-0908Cross-site scripting (XSS) vulnerability in logout.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 a...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now