2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-5630 | MEDIUM | 6.3 | 0.3% | Nov 25, 2019 | libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees. |
| CVE-2012-5527 | MEDIUM | 5.5 | 0.5% | Nov 25, 2019 | Claws Mail vCalendar plugin: credentials exposed on interface |
| CVE-2012-5521 | MEDIUM | 6.5 | 1.5% | Nov 25, 2019 | quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal |
| CVE-2012-5578 | MEDIUM | 6.2 | 0.4% | Nov 25, 2019 | Python keyring has insecure permissions on new databases allowing world-readable files to be created |
| CVE-2012-0812 | MEDIUM | 6.1 | 1.2% | Nov 22, 2019 | PostfixAdmin 2.3.4 has multiple XSS vulnerabilities |
| CVE-2012-2078 | MEDIUM | 4.8 | 0.5% | Nov 21, 2019 | Cross-site scripting (XSS) vulnerability in the Activity module 6.x-1.x for Drupal. |
| CVE-2012-1637 | MEDIUM | 4.8 | 0.5% | Nov 21, 2019 | Cross-site scripting vulnerability (XSS) in the Quick Tabs module 6.x-2.x before 6.x-2.1, 6.x-3.x before 6.x-3.1, and 7.... |
| CVE-2012-1001 | MEDIUM | 6.1 | 3.6% | Nov 21, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in Chyrp before 2.1.2 and before 2.5 Beta 2 allow remote attackers t... |
| CVE-2012-1257 | MEDIUM | 5.5 | 0.7% | Nov 20, 2019 | Pidgin 2.10.0 uses DBUS for certain cleartext communication, which allows local users to obtain sensitive information vi... |
| CVE-2012-6136 | MEDIUM | 5.5 | 0.3% | Nov 20, 2019 | tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes. |
| CVE-2012-0843 | MEDIUM | 5.5 | 0.4% | Nov 19, 2019 | uzbl: Information disclosure via world-readable cookies storage file |
| CVE-2012-0842 | MEDIUM | 5.5 | 0.4% | Nov 19, 2019 | surf: cookie jar has read access from other local user |
| CVE-2012-4441 | MEDIUM | 6.1 | 1.9% | Nov 18, 2019 | Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra... |
| CVE-2012-4440 | MEDIUM | 6.1 | 1.9% | Nov 18, 2019 | Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra... |
| CVE-2012-4439 | MEDIUM | 6.1 | 1.8% | Nov 18, 2019 | Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra... |
| CVE-2012-1169 | MEDIUM | 5.3 | 1.8% | Nov 14, 2019 | Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first ... |
| CVE-2012-1161 | MEDIUM | 4.3 | 1.4% | Nov 14, 2019 | Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results |
| CVE-2012-1159 | MEDIUM | 4.3 | 1.4% | Nov 14, 2019 | Moodle before 2.2.2: Overview report allows users to see hidden courses |
| CVE-2012-1158 | MEDIUM | 4.3 | 1.4% | Nov 14, 2019 | Moodle before 2.2.2 has a course information leak in gradebook where users are able to see hidden grade items in export |
| CVE-2012-1157 | MEDIUM | 4.3 | 1.2% | Nov 14, 2019 | Moodle before 2.2.2 has a default repository capabilities issue where all repositories are viewable by all users by defa... |
| CVE-2012-5193 | MEDIUM | 6.1 | 1.8% | Nov 13, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 2.8.1 and earlier allow remote attackers to inject arbi... |
| CVE-2012-4385 | MEDIUM | 6.5 | 1.6% | Nov 13, 2019 | letodms 3.3.6 has CSRF via change password |
| CVE-2012-4384 | MEDIUM | 6.1 | 1.6% | Nov 13, 2019 | letodms has multiple XSS issues: Reflected XSS in Login Page, Stored XSS in Document Owner/User name, Stored XSS in Cale... |
| CVE-2012-0049 | MEDIUM | 4.3 | 1.3% | Nov 7, 2019 | OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server. |
| CVE-2012-6124 | MEDIUM | 5.3 | 1.3% | Oct 31, 2019 | A casting error in Chicken before 4.8.0 on 64-bit platform caused the random number generator to return a constant value... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now