2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-6662 | — | — | 6.5% | Nov 24, 2014 | Cross-site scripting (XSS) vulnerability in the default content option in jquery.ui.tooltip.js in the Tooltip widget in ... |
| CVE-2012-6665 | — | — | 3.1% | Nov 17, 2014 | Directory traversal vulnerability in index.php in phpMoneyBooks 1.0.4 allows remote attackers to read arbitrary files vi... |
| CVE-2012-1669 | — | — | 3.5% | Nov 17, 2014 | Directory traversal vulnerability in index.php in phpMoneyBooks before 1.0.3 allows remote attackers to include and exec... |
| CVE-2012-2301 | — | — | 1.2% | Nov 16, 2014 | The Ubercart module 6.x-2.x before 6.x-2.8 for Drupal allows remote authenticated users with the "administer product cla... |
| CVE-2012-6661 | — | — | 2.3% | Nov 3, 2014 | Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, does not reseed the pseudo-random number gener... |
| CVE-2012-5508 | — | — | 1.5% | Nov 3, 2014 | The error pages in Plone before 4.2.3 and 4.3 before beta 1 allow remote attackers to obtain random numbers and derive t... |
| CVE-2012-5500 | — | — | 1.1% | Nov 3, 2014 | The batch id change script (renameObjectsByPaths.py) in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers... |
| CVE-2012-5580 | — | — | 3.1% | Oct 27, 2014 | Format string vulnerability in the print_proxies function in bin/proxy.c in libproxy 0.3.1 might allow context-dependent... |
| CVE-2012-1111 | — | — | 0.5% | Oct 27, 2014 | lightdm before 1.0.9 does not properly close file descriptors before opening a child process, which allows local users t... |
| CVE-2012-5702 | — | — | 2.1% | Oct 21, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in dotProject before 2.1.7 allow remote attackers to inject arbitrar... |
| CVE-2012-5243 | — | — | 2.8% | Oct 21, 2014 | functions/suggest.php in Banana Dance B.2.6 and earlier allows remote attackers to read arbitrary database information v... |
| CVE-2012-5242 | — | — | 2.5% | Oct 21, 2014 | Directory traversal vulnerability in functions/suggest.php in Banana Dance B.2.6 and earlier allows remote attackers to ... |
| CVE-2012-5697 | — | — | 0.4% | Oct 20, 2014 | The btinstall installation script in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 uses weak permissions... |
| CVE-2012-5696 | — | — | 1.3% | Oct 20, 2014 | Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, ... |
| CVE-2012-5695 | — | — | 0.7% | Oct 20, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 thr... |
| CVE-2012-5694 | — | — | 1.3% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allow remote att... |
| CVE-2012-5866 | — | — | 1.2% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in include.php in Achievo 1.4.5 allows remote attackers to inject arbitrary web... |
| CVE-2012-5865 | — | — | 1.1% | Oct 20, 2014 | SQL injection vulnerability in dispatch.php in Achievo 1.4.5 allows remote authenticated users to execute arbitrary SQL ... |
| CVE-2012-5701 | — | — | 0.7% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute a... |
| CVE-2012-5244 | — | — | 1.5% | Oct 20, 2014 | Multiple SQL injection vulnerabilities in Banana Dance B.2.6 and earlier allow remote attackers to execute arbitrary SQL... |
| CVE-2012-2413 | — | — | 1.2% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in the ja_purity template for Joomla! 1.5.26 and earlier allows remote attacker... |
| CVE-2012-0811 | — | — | 1.7% | Oct 1, 2014 | Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users... |
| CVE-2012-6316 | — | — | 0.8% | Sep 30, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the TP-LINK TL-WR841N router with firmware 3.13.9 Build 120201 Re... |
| CVE-2012-5507 | — | — | 0.9% | Sep 30, 2014 | AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote... |
| CVE-2012-5506 | — | — | 1.6% | Sep 30, 2014 | python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to cause a denial of service (infi... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now