2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-6575——Cross-site scripting (XSS) vulnerability in the Exposed Filter Data module 6.x-1.x before 6.x-1.2 for Drupal allows remo...
CVE-2012-6574——Cross-site scripting (XSS) vulnerability in the Fonecta verify module 7.x-1.x before 7.x-1.6 for Drupal allows remote at...
CVE-2012-6573——Cross-site scripting (XSS) vulnerability in the Apache Solr Autocomplete module 6.x-1.x before 6.x-1.4 and 7.x-1.x befor...
CVE-2012-6572——Cross-site scripting (XSS) vulnerability in the phptemplate_preprocess_node function in template.php in the Inf08 theme ...
CVE-2012-6571——The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR ro...
CVE-2012-6570——The HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web management components on Huawei AR ro...
CVE-2012-6569——Stack-based buffer overflow in the HTTP module in the (1) Branch Intelligent Management System (BIMS) and (2) web manage...
CVE-2012-6568——Buffer overflow in the back-end component in Huawei UTPS 1.0 allows local users to gain privileges via a long IDS_PLUGIN...
CVE-2012-4960——The Huawei NE5000E, MA5200G, NE40E, NE80E, ATN, NE40, NE80, NE20E-X6, NE20, ME60, CX600, CX200, CX300, ACU, WLAN AC 6605...
CVE-2012-6567——REDCap before 4.14.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the log...
CVE-2012-6566——Cross-site scripting (XSS) vulnerability in REDCap before 4.14.2 allows remote attackers to inject arbitrary web script ...
CVE-2012-6565——Cross-site scripting (XSS) vulnerability in REDCap before 4.14.3 allows remote authenticated users to inject arbitrary w...
CVE-2012-6564——Cross-site scripting (XSS) vulnerability in REDCap before 4.14.5 allows remote attackers to inject arbitrary web script ...
CVE-2012-3544——Apache Tomcat 6.x before 6.0.37 and 7.x before 7.0.30 does not properly handle chunk extensions in chunked transfer codi...
CVE-2012-6399——Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) ...
CVE-2012-4697——TURCK BL20 Programmable Gateway and BL67 Programmable Gateway have hardcoded accounts, which allows remote attackers to ...
CVE-2012-6563——engine/lib/access.php in Elgg before 1.8.5 does not properly clear cached access lists during plugin boot, which allows ...
CVE-2012-6562——engine/lib/users.php in Elgg before 1.8.5 does not properly specify permissions for the useradd action, which allows rem...
CVE-2012-6561——Cross-site scripting (XSS) vulnerability in engine/lib/views.php in Elgg before 1.8.5 allows remote attackers to inject ...
CVE-2012-6560——SQL injection vulnerability in deviceadd.php in FreeNAC 3.02 allows remote attackers to execute arbitrary SQL commands v...
CVE-2012-6559——Multiple cross-site scripting (XSS) vulnerabilities in FreeNAC 3.02 allow remote attackers to inject arbitrary web scrip...
CVE-2012-6558——Heap-based buffer overflow in HeavenTools PE Explorer 1.99 R6 allows remote attackers to execute arbitrary code via the ...
CVE-2012-6557——Multiple cross-site scripting (XSS) vulnerabilities in the AboutMe plugin 1.1.1 for Vanilla Forums allow remote attacker...
CVE-2012-6556——Multiple cross-site scripting (XSS) vulnerabilities in the FirstLastNames plugin 1.1.1 for Vanilla Forums allow remote a...
CVE-2012-6555——Cross-site scripting (XSS) vulnerability in the LatestComment plugin 1.1 for Vanilla Forums allows remote attackers to i...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now