2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-0933 | — | — | 4.0% | Jan 29, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Acidcat CMS 3.5.1, 3.5.2, 3.5.6, and possibly earlier allow remot... |
| CVE-2012-0932 | — | — | 1.6% | Jan 29, 2012 | Cross-site scripting (XSS) vulnerability in admin/login.php in Lead Capture Page System allows remote attackers to injec... |
| CVE-2012-0053 | — | — | 82.8% | Jan 28, 2012 | protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construct... |
| CVE-2012-0021 | — | — | 30.8% | Jan 28, 2012 | The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21... |
| CVE-2012-0931 | CRITICAL | 9.8 | 4.9% | Jan 28, 2012 | Schneider Electric Modicon Quantum PLC does not perform authentication between the Unity software and PLC, which allows ... |
| CVE-2012-0930 | MEDIUM | 6.1 | 2.2% | Jan 28, 2012 | Cross-site scripting (XSS) vulnerability in Schneider Electric Modicon Quantum PLC allows remote attackers to inject arb... |
| CVE-2012-0929 | HIGH | 7.5 | 4.9% | Jan 28, 2012 | Multiple buffer overflows in Schneider Electric Modicon Quantum PLC allow remote attackers to cause a denial of service ... |
| CVE-2012-0814 | MEDIUM | 6.5 | 3.7% | Jan 27, 2012 | The auth_parse_options function in auth-options.c in sshd in OpenSSH before 5.7 provides debug messages containing autho... |
| CVE-2012-0056 | — | — | 10.9% | Jan 27, 2012 | The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when... |
| CVE-2012-0029 | — | — | 0.9% | Jan 27, 2012 | Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and pos... |
| CVE-2012-0807 | — | — | 3.5% | Jan 27, 2012 | Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature i... |
| CVE-2012-0806 | — | — | 3.3% | Jan 27, 2012 | Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors in... |
| CVE-2012-0395 | — | — | 3.2% | Jan 27, 2012 | Buffer overflow in the server in EMC NetWorker 7.5.x and 7.6.x before 7.6.3 SP1 Cumulative Release build 851 allows remo... |
| CVE-2012-0312 | — | — | 1.1% | Jan 26, 2012 | Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9, and osCommerce Online Merchant before 2.3.1, a... |
| CVE-2012-0311 | — | — | 1.1% | Jan 26, 2012 | Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9 allows remote attackers to inject arbitrary web... |
| CVE-2012-0885 | — | — | 2.5% | Jan 25, 2012 | chan_sip.c in Asterisk Open Source 1.8.x before 1.8.8.2 and 10.x before 10.0.1, when the res_srtp module is used and med... |
| CVE-2012-0919 | — | — | 1.1% | Jan 24, 2012 | Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Director 02-50-01 through 02-50-07, 03-00 through 03-0... |
| CVE-2012-0918 | — | — | 4.2% | Jan 24, 2012 | Unspecified vulnerability in Hitachi COBOL2002 Net Developer, Net Server Suite, and Net Client Suite 01-00, 01-01 throug... |
| CVE-2012-0917 | — | — | 1.1% | Jan 24, 2012 | Cross-site scripting (XSS) vulnerability in Hitachi IT Operations Analyzer 02-01, 02-51 through 02-51-01, and 02-53 thro... |
| CVE-2012-0916 | — | — | 3.5% | Jan 24, 2012 | Heap-based buffer overflow in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via a crafted image in a... |
| CVE-2012-0915 | — | — | 3.5% | Jan 24, 2012 | Integer signedness error in RenRen Talk 2.9 allows remote attackers to execute arbitrary code via crafted dimensions of ... |
| CVE-2012-0914 | — | — | 2.4% | Jan 24, 2012 | Cross-site scripting (XSS) vulnerability in display_renderers/panels_renderer_editor.class.php in the admin view in the ... |
| CVE-2012-0913 | — | — | 1.1% | Jan 24, 2012 | SQL injection vulnerability in checklogin.aspx in ICloudCenter ICTimeAttendance 1.0 allows remote attackers to execute a... |
| CVE-2012-0909 | — | — | 1.9% | Jan 24, 2012 | Cross-site scripting (XSS) vulnerability in Horde_Form in Horde Groupware Webmail Edition before 4.0.6 allows remote att... |
| CVE-2012-0908 | — | — | 1.3% | Jan 24, 2012 | Cross-site scripting (XSS) vulnerability in logout.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 a... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now