2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-6621 | — | — | 1.4% | Jan 16, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS 3.1, 3.1.2, 3.2.3, and earlier allow remote attacke... |
| CVE-2012-6620 | — | — | 2.1% | Jan 16, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the (1) tasks and (2) search views in Horde Kronolith H4 before 3... |
| CVE-2012-2899 | — | — | 0.8% | Jan 5, 2014 | Google Chrome before 21.0.1180.82 on iOS makes certain incorrect calls to WebView methods that trigger use of an applewe... |
| CVE-2012-2898 | — | — | 0.7% | Jan 5, 2014 | Google Chrome before 21.0.1180.82 on iOS on iPad devices allows remote attackers to spoof the Omnibox URL via vectors in... |
| CVE-2012-0264 | — | — | 4.4% | Dec 31, 2013 | op5 Monitor and op5 Appliance before 5.5.0 do not properly manage session cookies, which allows remote attackers to have... |
| CVE-2012-0263 | — | — | 1.9% | Dec 31, 2013 | monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain sensitive in... |
| CVE-2012-0262 | — | — | 72.9% | Dec 31, 2013 | op5config/welcome in system-op5config before 2.0.3 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers... |
| CVE-2012-0261 | — | — | 73.9% | Dec 31, 2013 | license.php in system-portal before 1.6.2 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execu... |
| CVE-2012-6618 | — | — | 1.6% | Dec 24, 2013 | The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running with certain -probesize v... |
| CVE-2012-6617 | — | — | 2.3% | Dec 24, 2013 | The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of s... |
| CVE-2012-6616 | — | — | 1.7% | Dec 24, 2013 | The mov_text_decode_frame function in libavcodec/movtextdec.c in FFmpeg before 1.0.2 allows remote attackers to cause a ... |
| CVE-2012-6615 | — | — | 2.3% | Dec 24, 2013 | The ff_ass_split_override_codes function in libavcodec/ass_split.c in FFmpeg before 1.0.2 allows remote attackers to cau... |
| CVE-2012-4135 | — | — | 0.5% | Dec 21, 2013 | Directory traversal vulnerability in filesys in Cisco NX-OS 6.1(2) and earlier allows local users to access arbitrary fi... |
| CVE-2012-4131 | — | — | 0.7% | Dec 21, 2013 | Directory traversal vulnerability in tar in Cisco NX-OS allows local users to access arbitrary files via crafted command... |
| CVE-2012-6151 | — | — | 9.5% | Dec 13, 2013 | Net-SNMP 5.7.1 and earlier, when AgentX is registering to handle a MIB and processing GETNEXT requests, allows remote at... |
| CVE-2012-5394 | — | — | 0.7% | Dec 13, 2013 | Cross-site request forgery (CSRF) vulnerability in the CentralAuth extension for MediaWiki before 1.19.9, 1.20.x before ... |
| CVE-2012-3047 | — | — | 0.9% | Dec 10, 2013 | Cross-site scripting (XSS) vulnerability in the web-wizard setup page on Cisco Scientific Atlanta D20 and D30 cable mode... |
| CVE-2012-6612 | — | — | 10.1% | Dec 7, 2013 | The (1) UpdateRequestHandler for XSLT or (2) XPathEntityProcessor in Apache Solr before 4.1 allows remote attackers to h... |
| CVE-2012-6150 | — | — | 3.8% | Dec 3, 2013 | The winbind_name_list_to_sid_string_list function in nsswitch/pam_winbind.c in Samba through 4.1.2 handles invalid requi... |
| CVE-2012-6535 | — | — | 4.6% | Dec 2, 2013 | DjVuLibre before 3.5.25.3, as used in Evince, Sumatra PDF Reader, VuDroid, and other products, allows remote attackers t... |
| CVE-2012-0434 | — | — | 1.7% | Dec 2, 2013 | The server in Crowbar, as used in SUSE Cloud 1.0, uses weak permissions for the production.log file, which has unspecifi... |
| CVE-2012-0427 | — | — | 0.5% | Dec 2, 2013 | yast2-add-on-creator in SUSE inst-source-utils 2008.11.26 before 2008.11.26-0.9.1 and 2012.9.13 before 2012.9.13-0.8.1 a... |
| CVE-2012-0426 | — | — | 0.3% | Dec 2, 2013 | Race condition in sap_suse_cluster_connector before 1.0.0-0.8.1 in SUSE Linux Enterprise for SAP Applications 11 SP2 all... |
| CVE-2012-0425 | — | — | 1.1% | Dec 2, 2013 | LanItems.ycp in save_y2logs in yast2-network before 2.24.4 in SUSE YaST writes cleartext Wi-Fi credentials to the y2log ... |
| CVE-2012-0420 | — | — | 0.3% | Dec 2, 2013 | zypp-refresh-wrapper in SUSE Zypper before 1.3.20 and 1.6.x before 1.6.166 allows local users to create files in arbitra... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now