2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4066——The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified req...
CVE-2012-5053——Cross-site scripting (XSS) vulnerability in the Receiver Web User Interface on Trimble Infrastructure GNSS Series Receiv...
CVE-2012-5942——Cross-site scripting (XSS) vulnerability in the Data Management Portal Web User Interface in IBM Tivoli Application Depe...
CVE-2012-5939——Cross-site scripting (XSS) vulnerability in Welcome.do in the Data Management Portal Web User Interface in IBM Tivoli Ap...
CVE-2012-5770——The SSL configuration in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.x before 7.2.1.4 supports the M...
CVE-2012-4855——Unspecified vulnerability in the web services framework in IBM WebSphere Commerce 6.0 through 6.0.0.11 and 7.0 through 7...
CVE-2012-3411——Dnsmasq before 2.63test1, when used with certain libvirt configurations, replies to requests from prohibited interfaces,...
CVE-2012-6026——The HTTP Profiler on the Cisco Aironet Access Point with software 15.2 and earlier does not properly manage buffers, whi...
CVE-2012-4858——IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 does not...
CVE-2012-4840——IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows r...
CVE-2012-4837——IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows r...
CVE-2012-4836——Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10....
CVE-2012-4835——Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10....
CVE-2012-2193——Cross-site scripting (XSS) vulnerability in Query Studio in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1...
CVE-2012-2177——Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10....
CVE-2012-1016——The pkinit_server_return_padata function in plugins/preauth/pkinit/pkinit_srv.c in the PKINIT implementation in the Key ...
CVE-2012-6116——modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for th...
CVE-2012-6109——lib/rack/multipart.rb in Rack before 1.1.4, 1.2.x before 1.2.6, 1.3.x before 1.3.7, and 1.4.x before 1.4.2 uses an incor...
CVE-2012-5604——The ldap_fluff gem for Ruby, as used in Red Hat CloudForms 1.1, when using Active Directory for authentication, allows r...
CVE-2012-5561——script/katello-generate-passphrase in Katello 1.1 uses world-readable permissions for /etc/katello/secure/passphrase, wh...
CVE-2012-1568——The ExecShield feature in a certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 5 and 6 and Fe...
CVE-2012-4542——block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization...
CVE-2012-4844——Cross-site scripting (XSS) vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attacke...
CVE-2012-4842——Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirec...
CVE-2012-5767——Unspecified vulnerability in the web interface on the IBM TS3500 Tape Library with firmware before C260 allows remote au...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now