2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2248 | HIGH | 8.1 | 2.4% | Nov 27, 2019 | An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable. |
| CVE-2012-6639 | HIGH | 8.8 | 2.0% | Nov 25, 2019 | An privilege elevation vulnerability exists in Cloud-init before 0.7.0 when requests to an untrusted system are submitte... |
| CVE-2012-5631 | HIGH | 8.8 | 1.8% | Nov 25, 2019 | ipa 3.0 does not properly check server identity before sending credential containing cookies |
| CVE-2012-5617 | HIGH | 7.8 | 0.4% | Nov 25, 2019 | gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation |
| CVE-2012-5535 | HIGH | 7.5 | 1.6% | Nov 25, 2019 | gnome-system-log polkit policy allows arbitrary files on the system to be read |
| CVE-2012-5518 | HIGH | 7.5 | 0.7% | Nov 25, 2019 | vdsm: certificate generation upon node creation allowing vdsm to start and serve requests from anyone who has a matching... |
| CVE-2012-6079 | HIGH | 7.5 | 2.1% | Nov 22, 2019 | W3 Total Cache before 0.9.2.5 exposes sensitive cached database information which allows remote attackers to download th... |
| CVE-2012-6078 | HIGH | 7.5 | 2.3% | Nov 22, 2019 | W3 Total Cache before 0.9.2.5 generates hash keys insecurely which allows remote attackers to predict the values of the ... |
| CVE-2012-6077 | HIGH | 7.5 | 5.4% | Nov 22, 2019 | W3 Total Cache before 0.9.2.5 allows remote attackers to retrieve password hash information due to insecure storage of d... |
| CVE-2012-0877 | HIGH | 7.5 | 1.9% | Nov 22, 2019 | PyXML: Hash table collisions CPU usage Denial of Service |
| CVE-2012-3407 | HIGH | 7.8 | 0.4% | Nov 22, 2019 | plow has local buffer overflow vulnerability |
| CVE-2012-2079 | HIGH | 8.8 | 0.5% | Nov 22, 2019 | A cross-site request forgery (CSRF) vulnerability in the Activity module 6.x-1.x for Drupal. |
| CVE-2012-4524 | HIGH | 7.5 | 2.9% | Nov 21, 2019 | xlockmore before 5.43 'dclock' security bypass vulnerability |
| CVE-2012-3543 | HIGH | 7.5 | 2.6% | Nov 21, 2019 | mono 2.10.x ASP.NET Web Form Hash collision DoS |
| CVE-2012-2350 | HIGH | 7.5 | 1.3% | Nov 21, 2019 | pam_shield before 0.9.4: Default configuration does not perform protective action |
| CVE-2012-2238 | HIGH | 7.5 | 1.8% | Nov 21, 2019 | trytond 2.4: ModelView.button fails to validate authorization |
| CVE-2012-6135 | HIGH | 7.5 | 2.3% | Nov 19, 2019 | RubyGems passenger 4.0.0 betas 1 and 2 allows remote attackers to delete arbitrary files during the startup process. |
| CVE-2012-6071 | HIGH | 7.5 | 1.3% | Nov 19, 2019 | nuSOAP before 0.7.3-5 does not properly check the hostname of a cert. |
| CVE-2012-6070 | HIGH | 7.5 | 1.6% | Nov 19, 2019 | Falconpl before 0.9.6.9-git20120606 misuses the libcurl API which may allow remote attackers to interfere with security ... |
| CVE-2012-4438 | HIGH | 8.8 | 2.4% | Nov 18, 2019 | Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins mas... |
| CVE-2012-1170 | HIGH | 7.5 | 0.9% | Nov 14, 2019 | Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough |
| CVE-2012-1168 | HIGH | 8.2 | 2.3% | Nov 14, 2019 | Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is re... |
| CVE-2012-1156 | HIGH | 7.5 | 2.1% | Nov 14, 2019 | Moodle before 2.2.2 has users' private files included in course backups |
| CVE-2012-1155 | HIGH | 7.5 | 2.1% | Nov 14, 2019 | Moodle has a database activity export permission issue where the export function of the database activity module exports... |
| CVE-2012-1572 | HIGH | 7.5 | 1.2% | Nov 12, 2019 | OpenStack Keystone: extremely long passwords can crash Keystone by exhausting stack space |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now