2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-5546——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This identifier was publicly assigned by ...
CVE-2012-0064——xkeyboard-config before 2.5 in X.Org before 7.6 enables certain XKB debugging functions by default, which allows physica...
CVE-2012-3406——The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probably other versions doe...
CVE-2012-3405——The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not p...
CVE-2012-3404——The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not p...
CVE-2012-2328——internal/cimxml/sax/NodeFactory.java in Standards-Based Linux Instrumentation for Manageability (SBLIM) Common Informati...
CVE-2012-5524——The _ssl_verify_callback function in tls_nb.py in Gajim before 0.15.3 does not properly verify SSL certificates, which a...
CVE-2012-1095——osc before 0.134 might allow remote OBS repository servers or package maintainers to execute arbitrary commands via a cr...
CVE-2012-6152——The Yahoo! protocol plugin in libpurple in Pidgin before 2.10.8 does not properly validate UTF-8 data, which allows remo...
CVE-2012-0875——SystemTap 1.7, 1.6.7, and probably other versions, when unprivileged mode is enabled, allows local users to obtain sensi...
CVE-2012-6493——Cross-site request forgery (CSRF) vulnerability in Rapid7 Nexpose Security Console before 5.5.4 allows remote attackers ...
CVE-2012-2108——Stack-based buffer overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, al...
CVE-2012-2107——Integer overflow in the main function in util/lpci_main.c in Csound before 5.17.2, when converting a file, allows user-a...
CVE-2012-2106——Integer overflow in the pv_import function in util/pv_import.c in Csound 5.16.6, when converting a file, allows remote a...
CVE-2012-2250——Tor before 0.2.3.24-rc allows remote attackers to cause a denial of service (assertion failure and daemon exit) by perfo...
CVE-2012-2249——Tor before 0.2.3.23-rc allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a re...
CVE-2012-3427——EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/...
CVE-2012-3000——Multiple SQL injection vulnerabilities in sam/admin/reports/php/saveSettings.php in the (1) APM WebGUI in F5 BIG-IP LTM,...
CVE-2012-6086——libs/zbxmedia/eztexting.c in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.8rc1, and 2.1.x before 2.1.2 does not prope...
CVE-2012-5192——Directory traversal vulnerability in gmap/view_overlay.php in Bitweaver 2.8.1 and earlier allows remote attackers to rea...
CVE-2012-6447——Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk 5.0.0 through 5.0.2 allows remote attackers to inject a...
CVE-2012-2997——XML External Entity (XXE) vulnerability in sam/admin/vpe2/public/php/server.php in F5 BIG-IP 10.0.0 through 10.2.4 and 1...
CVE-2012-6635——wp-admin/includes/class-wp-posts-list-table.php in WordPress before 3.3.3 does not properly restrict excerpt-view access...
CVE-2012-6634——wp-admin/media-upload.php in WordPress before 3.3.3 allows remote attackers to obtain sensitive information or bypass in...
CVE-2012-6633——Cross-site scripting (XSS) vulnerability in wp-includes/default-filters.php in WordPress before 3.3.3 allows remote atta...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now