2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2012-5630MEDIUM6.3libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees.
CVE-2012-5527MEDIUM5.5Claws Mail vCalendar plugin: credentials exposed on interface
CVE-2012-5521MEDIUM6.5quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal
CVE-2012-5578MEDIUM6.2Python keyring has insecure permissions on new databases allowing world-readable files to be created
CVE-2012-0812MEDIUM6.1PostfixAdmin 2.3.4 has multiple XSS vulnerabilities
CVE-2012-2078MEDIUM4.8Cross-site scripting (XSS) vulnerability in the Activity module 6.x-1.x for Drupal.
CVE-2012-1637MEDIUM4.8Cross-site scripting vulnerability (XSS) in the Quick Tabs module 6.x-2.x before 6.x-2.1, 6.x-3.x before 6.x-3.1, and 7....
CVE-2012-1001MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Chyrp before 2.1.2 and before 2.5 Beta 2 allow remote attackers t...
CVE-2012-1257MEDIUM5.5Pidgin 2.10.0 uses DBUS for certain cleartext communication, which allows local users to obtain sensitive information vi...
CVE-2012-6136MEDIUM5.5tuned 2.10.0 creates its PID file with insecure permissions which allows local users to kill arbitrary processes.
CVE-2012-0843MEDIUM5.5uzbl: Information disclosure via world-readable cookies storage file
CVE-2012-0842MEDIUM5.5surf: cookie jar has read access from other local user
CVE-2012-4441MEDIUM6.1Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra...
CVE-2012-4440MEDIUM6.1Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra...
CVE-2012-4439MEDIUM6.1Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitra...
CVE-2012-1169MEDIUM5.3Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first ...
CVE-2012-1161MEDIUM4.3Moodle before 2.2.2: Course information leak via hidden courses being displayed in tag search results
CVE-2012-1159MEDIUM4.3Moodle before 2.2.2: Overview report allows users to see hidden courses
CVE-2012-1158MEDIUM4.3Moodle before 2.2.2 has a course information leak in gradebook where users are able to see hidden grade items in export
CVE-2012-1157MEDIUM4.3Moodle before 2.2.2 has a default repository capabilities issue where all repositories are viewable by all users by defa...
CVE-2012-5193MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 2.8.1 and earlier allow remote attackers to inject arbi...
CVE-2012-4385MEDIUM6.5letodms 3.3.6 has CSRF via change password
CVE-2012-4384MEDIUM6.1letodms has multiple XSS issues: Reflected XSS in Login Page, Stored XSS in Document Owner/User name, Stored XSS in Cale...
CVE-2012-0049MEDIUM4.3OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server.
CVE-2012-6124MEDIUM5.3A casting error in Chicken before 4.8.0 on 64-bit platform caused the random number generator to return a constant value...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now