2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-5700 | — | — | 1.8% | Sep 22, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Baby Gekko before 1.2.2f allow remote attackers to inject arbitra... |
| CVE-2012-6659 | — | — | 0.9% | Sep 19, 2014 | Cross-site scripting (XSS) vulnerability in the admin interface in Phorum before 5.2.19 allows remote attackers to injec... |
| CVE-2012-2588 | — | — | 2.4% | Sep 19, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in MailEnable Enterprise 6.5 allow remote attackers to inject arbitr... |
| CVE-2012-6658 | — | — | 1.8% | Sep 17, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in SpiceWorks 5.3.75941 allow remote attackers to inject arbitrary w... |
| CVE-2012-2956 | — | — | 1.1% | Sep 17, 2014 | SQL injection vulnerability in SpiceWorks 5.3.75941 allows remote authenticated users to execute arbitrary SQL commands ... |
| CVE-2012-2583 | — | — | 3.7% | Sep 17, 2014 | Cross-site scripting (XSS) vulnerability in Mini Mail Dashboard Widget plugin 1.42 for WordPress allows remote attackers... |
| CVE-2012-1507 | — | — | 2.4% | Sep 17, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in OrangeHRM before 2.7 allow remote attackers to inject arbitrary w... |
| CVE-2012-1506 | — | — | 1.3% | Sep 17, 2014 | SQL injection vulnerability in the updateStatus function in lib/models/benefits/Hsp.php in OrangeHRM before 2.7 allows r... |
| CVE-2012-1417 | — | — | 1.7% | Sep 17, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Local Phone book and Blacklist form in Yealink VOIP Phones allow ... |
| CVE-2012-1032 | — | — | 1.2% | Sep 17, 2014 | Cross-site scripting (XSS) vulnerability in the Euroling SiteSeeker module 3.x before 3.4.5 for EPiServer allows remote ... |
| CVE-2012-1556 | — | — | 3.3% | Sep 12, 2014 | Cross-site scripting (XSS) vulnerability in Synology Photo Station 5 for DiskStation Manager (DSM) 3.2-1955 allows remot... |
| CVE-2012-4240 | — | — | 1.2% | Sep 11, 2014 | SQL injection vulnerability in modules/calendar/json.php in Group-Office community before 4.0.90 allows remote authentic... |
| CVE-2012-0984 | — | — | 4.2% | Sep 11, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS before 2.5.5 allow remote attackers to inject arbitrary web... |
| CVE-2012-6153 | — | — | 5.8% | Sep 4, 2014 | http/conn/ssl/AbstractVerifier.java in Apache Commons HttpClient before 4.2.3 does not properly verify that the server h... |
| CVE-2012-4768 | — | — | 10.5% | Sep 4, 2014 | Cross-site scripting (XSS) vulnerability in the Download Monitor plugin before 3.3.5.9 for WordPress allows remote attac... |
| CVE-2012-4234 | — | — | 2.3% | Sep 4, 2014 | Cross-site scripting (XSS) vulnerability in the group moderation screen in the control center (control.php) in Phorum be... |
| CVE-2012-4226 | — | — | 2.0% | Sep 3, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Quick Post Widget plugin 1.9.1 for WordPress allow remote attacke... |
| CVE-2012-1503 | — | — | 2.0% | Aug 29, 2014 | Cross-site scripting (XSS) vulnerability in Six Apart (formerly Six Apart KK) Movable Type (MT) Pro 5.13 allows remote a... |
| CVE-2012-6654 | — | — | 2.1% | Aug 14, 2014 | Multiple SQL injection vulnerabilities in ZPanel 10.0.1 and earlier allow remote attackers to execute arbitrary SQL comm... |
| CVE-2012-5685 | — | — | 2.3% | Aug 14, 2014 | SQL injection vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via t... |
| CVE-2012-5684 | — | — | 3.2% | Aug 14, 2014 | Cross-site scripting (XSS) vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to inject arbitrary web sc... |
| CVE-2012-5683 | — | — | 1.1% | Aug 14, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in ZPanel 10.0.1 and earlier allow remote attackers to hijack... |
| CVE-2012-3820 | — | — | 2.1% | Aug 14, 2014 | Multiple SQL injection vulnerabilities in Campaign11.exe in Arial Software Campaign Enterprise before 11.0.551 allow rem... |
| CVE-2012-0939 | — | — | 1.2% | Aug 14, 2014 | Multiple SQL injection vulnerabilities in TestLink 1.8.5b and earlier allow remote authenticated users with the Requirem... |
| CVE-2012-0938 | — | — | 5.8% | Aug 14, 2014 | Multiple SQL injection vulnerabilities in TestLink 1.9.3, 1.8.5b, and earlier allow remote authenticated users with cert... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now