2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-6575 | — | — | 1.2% | Jun 27, 2013 | Cross-site scripting (XSS) vulnerability in the Exposed Filter Data module 6.x-1.x before 6.x-1.2 for Drupal allows remo... |
| CVE-2012-6574 | — | — | 1.2% | Jun 27, 2013 | Cross-site scripting (XSS) vulnerability in the Fonecta verify module 7.x-1.x before 7.x-1.6 for Drupal allows remote at... |
| CVE-2012-6573 | — | — | 2.1% | Jun 25, 2013 | Cross-site scripting (XSS) vulnerability in the Apache Solr Autocomplete module 6.x-1.x before 6.x-1.4 and 7.x-1.x befor... |
| CVE-2012-6572 | — | — | 1.3% | Jun 21, 2013 | Cross-site scripting (XSS) vulnerability in the phptemplate_preprocess_node function in template.php in the Inf08 theme ... |
| CVE-2012-6571 | — | — | 0.9% | Jun 20, 2013 | The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR ro... |
| CVE-2012-6570 | — | — | 1.7% | Jun 20, 2013 | The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR ro... |
| CVE-2012-6569 | — | — | 2.3% | Jun 20, 2013 | Stack-based buffer overflow in the HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web manage... |
| CVE-2012-6568 | — | — | 0.6% | Jun 20, 2013 | Buffer overflow in the back-end component in Huawei UTPS 1.0 allows local users to gain privileges via a long IDS_PLUGIN... |
| CVE-2012-4960 | — | — | 3.5% | Jun 20, 2013 | The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605... |
| CVE-2012-6567 | — | — | 1.5% | Jun 17, 2013 | REDCap before 4.14.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the log... |
| CVE-2012-6566 | — | — | 1.4% | Jun 17, 2013 | Cross-site scripting (XSS) vulnerability in REDCap before 4.14.2 allows remote attackers to inject arbitrary web script ... |
| CVE-2012-6565 | — | — | 0.9% | Jun 17, 2013 | Cross-site scripting (XSS) vulnerability in REDCap before 4.14.3 allows remote authenticated users to inject arbitrary w... |
| CVE-2012-6564 | — | — | 1.4% | Jun 17, 2013 | Cross-site scripting (XSS) vulnerability in REDCap before 4.14.5 allows remote attackers to inject arbitrary web script ... |
| CVE-2012-3544 | — | — | 10.8% | Jun 1, 2013 | Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly handle chunk extensions in chunked transfer codi... |
| CVE-2012-6399 | — | — | 0.5% | May 27, 2013 | Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) ... |
| CVE-2012-4697 | — | — | 2.3% | May 23, 2013 | TURCK BL20 Programmable Gateway and BL67 Programmable Gateway have hardcoded accounts, which allows remote attackers to ... |
| CVE-2012-6563 | — | — | 1.2% | May 23, 2013 | engine/lib/access.php in Elgg before 1.8.5 does not properly clear cached access lists during plugin boot, which allows ... |
| CVE-2012-6562 | — | — | 1.3% | May 23, 2013 | engine/lib/users.php in Elgg before 1.8.5 does not properly specify permissions for the useradd action, which allows rem... |
| CVE-2012-6561 | — | — | 1.2% | May 23, 2013 | Cross-site scripting (XSS) vulnerability in engine/lib/views.php in Elgg before 1.8.5 allows remote attackers to inject ... |
| CVE-2012-6560 | — | — | 1.1% | May 23, 2013 | SQL injection vulnerability in deviceadd.php in FreeNAC 3.02 allows remote attackers to execute arbitrary SQL commands v... |
| CVE-2012-6559 | — | — | 1.6% | May 23, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in FreeNAC 3.02 allow remote attackers to inject arbitrary web scrip... |
| CVE-2012-6558 | — | — | 5.5% | May 23, 2013 | Heap-based buffer overflow in HeavenTools PE Explorer 1.99 R6 allows remote attackers to execute arbitrary code via the ... |
| CVE-2012-6557 | — | — | 1.6% | May 23, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the AboutMe plugin 1.1.1 for Vanilla Forums allow remote attacker... |
| CVE-2012-6556 | — | — | 1.7% | May 23, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the FirstLastNames plugin 1.1.1 for Vanilla Forums allow remote a... |
| CVE-2012-6555 | — | — | 2.1% | May 23, 2013 | Cross-site scripting (XSS) vulnerability in the LatestComment plugin 1.1 for Vanilla Forums allows remote attackers to i... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now