2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-6719The sharebar plugin before 1.2.2 for WordPress has SQL injection.
CVE-2012-6718The sharebar plugin before 1.2.2 for WordPress has XSS, a different issue than CVE-2013-3491.
CVE-2012-6717The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562.
CVE-2012-6716The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links.
CVE-2012-6714The count-per-day plugin before 3.2.3 for WordPress has XSS via search words.
CVE-2012-6715The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header.
CVE-2012-6713The job-manager plugin before 0.7.19 for WordPress has multiple XSS issues.
CVE-2012-6652Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppa...
CVE-2012-6710ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empt...
CVE-2012-0721Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was...
CVE-2012-5628gofer before 0.68 uses world-writable permissions for /var/lib/gofer/journal/watchdog, which allows local users to cause...
CVE-2012-3536Two XSS vulnerabilities were fixed in message list and view in the Hupa Webmail application from the Apache James projec...
CVE-2012-6709ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation.
CVE-2012-0771Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2012-6347Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before...
CVE-2012-6346Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary ...
CVE-2012-5360Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.
CVE-2012-5359Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted ASF file.
CVE-2012-3331IBM Sametime allows remote attackers to obtain sensitive information from the Sametime Log database via a direct request...
CVE-2012-2166IBM XIV Storage System 2810-A14 and 2812-A14 devices before level 10.2.4.e-2 and 2810-114 and 2812-114 devices before le...
CVE-2012-0941Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiGate UTM WAF appliances with FortiOS 4.3.x before 4...
CVE-2012-3878Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2012-6708jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differen...
CVE-2012-6682Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownload...
CVE-2012-6671Multiple cross-site scripting (XSS) vulnerabilities in actions/main.php in the DragonByte Technologies Forumon RPG modul...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now