2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-5937 | — | — | 2.6% | Apr 12, 2013 | Unspecified vulnerability in the CLA2 server in IBM Gentran Integration Suite 4.3, Sterling Integrator 5.0 and 5.1, and ... |
| CVE-2012-6120 | — | — | 0.4% | Apr 10, 2013 | Red Hat OpenStack Essex and Folsom creates the /var/log/puppet directory with world-readable permissions, which allows l... |
| CVE-2012-6134 | — | — | 1.2% | Apr 9, 2013 | Cross-site request forgery (CSRF) vulnerability in the omniauth-oauth2 gem 1.1.1 and earlier for Ruby allows remote atta... |
| CVE-2012-6097 | — | — | 1.3% | Apr 9, 2013 | File descriptor leak in cronie 1.4.8, when running in certain environments, might allow local users to read restricted f... |
| CVE-2012-5635 | — | — | 0.3% | Apr 9, 2013 | The GlusterFS functionality in Red Hat Storage Management Console 2.0, Native Client, and Server 2.0 allows local users ... |
| CVE-2012-0706 | — | — | 0.7% | Apr 7, 2013 | IBM Scale Out Network Attached Storage (SONAS) 1.3 before 1.3.2.3 requires cleartext storage of LDAP credentials without... |
| CVE-2012-4710 | — | — | 2.1% | Apr 4, 2013 | Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows remote attackers to read arbitrary files, send HTTP requests to... |
| CVE-2012-6129 | — | — | 5.1% | Apr 3, 2013 | Stack-based buffer overflow in utp.cpp in libutp, as used in Transmission before 2.74 and possibly other products, allow... |
| CVE-2012-4546 | — | — | 1.2% | Apr 3, 2013 | The default configuration for IPA servers in Red Hat Enterprise Linux 6, when revoking a certificate from an Identity Ma... |
| CVE-2012-1038 | — | — | 1.6% | Apr 3, 2013 | Cross-site scripting (XSS) vulnerability in the WebAAA login functionality (wba_login.html) in Juniper Networks Mobility... |
| CVE-2012-6119 | — | — | 0.4% | Apr 2, 2013 | Candlepin before 0.7.24, as used in Red Hat Subscription Asset Manager before 1.2.1, does not properly check manifest si... |
| CVE-2012-6550 | — | — | 4.5% | Apr 2, 2013 | Cross-site scripting (XSS) vulnerability in ZeroClipboard before 1.1.4 allows remote attackers to inject arbitrary web s... |
| CVE-2012-4861 | — | — | 0.9% | Apr 1, 2013 | The web server in InfoSphere Data Replication Dashboard in IBM InfoSphere Replication Server 9.7 and 10.1 through 10.1.0... |
| CVE-2012-6534 | — | — | 4.5% | Mar 29, 2013 | Novell Sentinel Log Manager before 1.2.0.3 allows remote attackers to create data retention policies via a crafted text/... |
| CVE-2012-5879 | — | — | 5.2% | Mar 28, 2013 | An ActiveX control in McHealthCheck.dll in McAfee Virtual Technician (MVT) and ePO-MVT 6.5.0.2101 and earlier allows rem... |
| CVE-2012-5216 | — | — | 1.0% | Mar 28, 2013 | Cross-site request forgery (CSRF) vulnerability on HP ProCurve 1700-8 (aka J9079A) switches with software before VA.02.0... |
| CVE-2012-0553 | — | — | 2.6% | Mar 28, 2013 | Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.28, has unspecified impact and attac... |
| CVE-2012-5943 | — | — | 0.9% | Mar 26, 2013 | Cross-site scripting (XSS) vulnerability in IBM iNotes 8.5.x before 8.5.3 FP4 allows user-assisted remote attackers to i... |
| CVE-2012-5757 | — | — | 1.1% | Mar 21, 2013 | Cross-site scripting (XSS) vulnerability in the Web Client in IBM Rational ClearQuest 7.1.x before 7.1.2.10 and 8.x befo... |
| CVE-2012-5938 | — | — | 0.4% | Mar 20, 2013 | The installation process in IBM InfoSphere Information Server 8.1, 8.5, 8.7, and 9.1 on UNIX and Linux sets incorrect pe... |
| CVE-2012-4224 | — | — | — | Mar 19, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2012-4223 | — | — | — | Mar 19, 2013 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2012-6549 | — | — | 0.4% | Mar 15, 2013 | The isofs_export_encode_fh function in fs/isofs/export.c in the Linux kernel before 3.6 does not initialize a certain st... |
| CVE-2012-6548 | — | — | 0.4% | Mar 15, 2013 | The udf_encode_fh function in fs/udf/namei.c in the Linux kernel before 3.6 does not initialize a certain structure memb... |
| CVE-2012-6547 | — | — | 0.4% | Mar 15, 2013 | The __tun_chr_ioctl function in drivers/net/tun.c in the Linux kernel before 3.6 does not initialize a certain structure... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now