2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-6719 | — | — | 1.8% | Aug 28, 2019 | The sharebar plugin before 1.2.2 for WordPress has SQL injection. |
| CVE-2012-6718 | — | — | 0.9% | Aug 28, 2019 | The sharebar plugin before 1.2.2 for WordPress has XSS, a different issue than CVE-2013-3491. |
| CVE-2012-6717 | — | — | 0.9% | Aug 28, 2019 | The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562. |
| CVE-2012-6716 | — | — | 0.9% | Aug 22, 2019 | The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links. |
| CVE-2012-6714 | — | — | 0.9% | Aug 21, 2019 | The count-per-day plugin before 3.2.3 for WordPress has XSS via search words. |
| CVE-2012-6715 | — | — | 0.9% | Aug 21, 2019 | The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header. |
| CVE-2012-6713 | — | — | 0.9% | Aug 13, 2019 | The job-manager plugin before 0.7.19 for WordPress has multiple XSS issues. |
| CVE-2012-6652 | — | — | 4.4% | May 13, 2019 | Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppa... |
| CVE-2012-6710 | — | — | 25.0% | Oct 7, 2018 | ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empt... |
| CVE-2012-0721 | — | — | — | Jul 17, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2012-5628 | — | — | 0.3% | May 4, 2018 | gofer before 0.68 uses world-writable permissions for /var/lib/gofer/journal/watchdog, which allows local users to cause... |
| CVE-2012-3536 | — | — | 2.0% | Feb 27, 2018 | Two XSS vulnerabilities were fixed in message list and view in the Hupa Webmail application from the Apache James projec... |
| CVE-2012-6709 | — | — | 0.6% | Feb 23, 2018 | ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation. |
| CVE-2012-0771 | — | — | 5.2% | Feb 19, 2018 | Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory... |
| CVE-2012-6347 | — | — | 1.1% | Feb 9, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before... |
| CVE-2012-6346 | — | — | 0.8% | Feb 9, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary ... |
| CVE-2012-5360 | — | — | 3.3% | Feb 8, 2018 | Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file. |
| CVE-2012-5359 | — | — | 3.3% | Feb 8, 2018 | Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted ASF file. |
| CVE-2012-3331 | — | — | 1.7% | Feb 8, 2018 | IBM Sametime allows remote attackers to obtain sensitive information from the Sametime Log database via a direct request... |
| CVE-2012-2166 | — | — | 2.8% | Feb 8, 2018 | IBM XIV Storage System 2810-A14 and 2812-A14 devices before level 10.2.4.e-2 and 2810-114 and 2812-114 devices before le... |
| CVE-2012-0941 | — | — | 1.4% | Feb 8, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiGate UTM WAF appliances with FortiOS 4.3.x before 4... |
| CVE-2012-3878 | — | — | — | Jan 30, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2012-6708 | — | — | 8.8% | Jan 18, 2018 | jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differen... |
| CVE-2012-6682 | — | — | 1.7% | Jan 11, 2018 | Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownload... |
| CVE-2012-6671 | — | — | 1.6% | Jan 11, 2018 | Multiple cross-site scripting (XSS) vulnerabilities in actions/main.php in the DragonByte Technologies Forumon RPG modul... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now