2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2177 | — | — | 1.1% | Mar 5, 2013 | Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.... |
| CVE-2012-1016 | — | — | 2.6% | Mar 5, 2013 | The pkinit_server_return_padata function in plugins/preauth/pkinit/pkinit_srv.c in the PKINIT implementation in the Key ... |
| CVE-2012-6116 | — | — | 0.2% | Mar 1, 2013 | modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for th... |
| CVE-2012-6109 | — | — | 2.7% | Mar 1, 2013 | lib/rack/multipart.rb in Rack before 1.1.4, 1.2.x before 1.2.6, 1.3.x before 1.3.7, and 1.4.x before 1.4.2 uses an incor... |
| CVE-2012-5604 | — | — | 1.2% | Mar 1, 2013 | The ldap_fluff gem for Ruby, as used in Red Hat CloudForms 1.1, when using Active Directory for authentication, allows r... |
| CVE-2012-5561 | — | — | 0.3% | Mar 1, 2013 | script/katello-generate-passphrase in Katello 1.1 uses world-readable permissions for /etc/katello/secure/passphrase, wh... |
| CVE-2012-1568 | — | — | 0.4% | Mar 1, 2013 | The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fe... |
| CVE-2012-4542 | — | — | 0.3% | Feb 28, 2013 | block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization... |
| CVE-2012-4844 | — | — | 0.9% | Feb 27, 2013 | Cross-site scripting (XSS) vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attacke... |
| CVE-2012-4842 | — | — | 1.0% | Feb 27, 2013 | Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirec... |
| CVE-2012-5767 | — | — | 1.1% | Feb 27, 2013 | Unspecified vulnerability in the web interface on the IBM TS3500 Tape Library with firmware before C260 allows remote au... |
| CVE-2012-4558 | — | — | 22.9% | Feb 26, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_pro... |
| CVE-2012-3499 | — | — | 22.9% | Feb 26, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the Apache HTTP Server 2.2.x before 2.2.24-dev and 2.4.x before 2... |
| CVE-2012-6074 | — | — | 1.4% | Feb 24, 2013 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.4... |
| CVE-2012-6073 | — | — | 1.8% | Feb 24, 2013 | Open redirect vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before 1... |
| CVE-2012-6072 | — | — | 1.8% | Feb 24, 2013 | CRLF injection vulnerability in Jenkins before 1.491, Jenkins LTS before 1.480.1, and Jenkins Enterprise 1.424.x before ... |
| CVE-2012-5658 | — | — | 0.4% | Feb 24, 2013 | rhc-chk.rb in Red Hat OpenShift Origin before 1.1, when -d (debug mode) is used, outputs the password and other sensitiv... |
| CVE-2012-6121 | — | — | 2.0% | Feb 24, 2013 | Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0.8.5 allows remote attackers to inject arbitrary w... |
| CVE-2012-5647 | — | — | 1.5% | Feb 24, 2013 | Open redirect vulnerability in node-util/www/html/restorer.php in Red Hat OpenShift Origin before 1.0.5-3 allows remote ... |
| CVE-2012-5646 | — | — | 2.2% | Feb 24, 2013 | node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to execute arbitr... |
| CVE-2012-2697 | — | — | 0.4% | Feb 24, 2013 | Unspecified vulnerability in autofs, as used in Red Hat Enterprise Linux (RHEL) 5, allows local users to cause a denial ... |
| CVE-2012-5337 | — | — | 2.5% | Feb 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in jforum.page in JForum 2.1.9 allow remote attackers to inject arbi... |
| CVE-2012-6128 | — | — | 2.6% | Feb 24, 2013 | Multiple stack-based buffer overflows in http.c in OpenConnect before 4.08 allow remote VPN gateways to cause a denial o... |
| CVE-2012-6093 | — | — | 1.8% | Feb 24, 2013 | The QSslSocket::sslErrors function in Qt before 4.6.5, 4.7.x before 4.7.6, 4.8.x before 4.8.5, when using certain versio... |
| CVE-2012-5624 | — | — | 1.9% | Feb 24, 2013 | The XMLHttpRequest object in Qt before 4.8.4 enables http redirection to the file scheme, which allows man-in-the-middle... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now