2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2012-0945MEDIUM4.9whoopsie-daisy before 0.1.26: Root user can remove arbitrary files
CVE-2012-0334MEDIUM6.4Cisco IronPort Web Security Appliance AsyncOS software prior to 7.5 has a SSL Certificate Caching vulnerability which co...
CVE-2012-4767MEDIUM6.1An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, w...
CVE-2012-3821MEDIUM4.3A Security Bypass vulnerability exists in the activate.asp page in Arial Software Campaign Enterprise 11.0.551, which co...
CVE-2012-5558MEDIUM4.8Cross-site scripting (XSS) vulnerability in the Smiley module 6.x-1.x versions prior to 6.x-1.1 and Smileys module 6.x-1...
CVE-2012-1915MEDIUM6.1EllisLab CodeIgniter 2.1.2 allows remote attackers to bypass the xss_clean() Filter and perform XSS attacks.
CVE-2012-2724MEDIUM5.3The Simplenews module 6.x-1.x before 6.x-1.4, 6.x-2.x before 6.x-2.0-alpha4, and 7.x-1.x before 7.x-1.0-rc1 for Drupal r...
CVE-2012-1261MEDIUM6.1Cross-site scripting (XSS) vulnerability in cgi-bin/scrut_fa_exclusions.cgi in Plixer International Scrutinizer NetFlow ...
CVE-2012-1260MEDIUM6.1Cross-site scripting (XSS) vulnerability in cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow An...
CVE-2012-1258MEDIUM6.5cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer before 9.0.1.19899 does not validate ...
CVE-2012-4451MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to injec...
CVE-2012-5476MEDIUM5.5Within the RHOS Essex Preview (2012.2) of the OpenStack dashboard package, the file /etc/quantum/quantum.conf is world r...
CVE-2012-5474MEDIUM5.5The file /etc/openstack-dashboard/local_settings within Red Hat OpenStack Platform 2.0 and RHOS Essex Release (python-dj...
CVE-2012-2736MEDIUM4.4In NetworkManager 0.9.2.0, when a new wireless network was created with WPA/WPA2 security in AdHoc mode, it created an o...
CVE-2012-5639MEDIUM6.5LibreOffice and OpenOffice automatically open embedded content
CVE-2012-2237MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.4.x before 1.4.3 and 1.5.x before 1.5.2 allow remote att...
CVE-2012-2092MEDIUM5.9A Security Bypass vulnerability exists in Ubuntu Cobbler before 2,2,2 in the cobbler-ubuntu-import script due to an erro...
CVE-2012-1115MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, a...
CVE-2012-1114MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.p...
CVE-2012-1105MEDIUM5.5An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. Th...
CVE-2012-1104MEDIUM5.3A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of ser...
CVE-2012-4526MEDIUM6.1piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)
CVE-2012-4525MEDIUM6.1piwigo has XSS in password.php
CVE-2012-5644MEDIUM5.5libuser has information disclosure when moving user's home directory
CVE-2012-5640MEDIUM5.5thttpd has a local DoS vulnerability via specially-crafted .htpasswd files

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now