2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-6435 | HIGH | 7.5 | 41.9% | Jan 24, 2013 | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2... |
| CVE-2012-6095 | — | — | 0.7% | Jan 24, 2013 | ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary fil... |
| CVE-2012-5670 | — | — | 2.7% | Jan 24, 2013 | The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service... |
| CVE-2012-5669 | — | — | 3.9% | Jan 24, 2013 | The _bdf_parse_glyphs function in FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service... |
| CVE-2012-5668 | — | — | 2.3% | Jan 24, 2013 | FreeType before 2.4.11 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and cra... |
| CVE-2012-6521 | — | — | 1.0% | Jan 24, 2013 | Cross-site scripting (XSS) vulnerability in apps/admin/handlers/versions.php in Elefant CMS 1.2.0 allows remote attacker... |
| CVE-2012-6520 | — | — | 1.3% | Jan 24, 2013 | Multiple SQL injection vulnerabilities in the advanced search in Wikidforum 2.10 allow remote attackers to execute arbit... |
| CVE-2012-6519 | — | — | 1.7% | Jan 24, 2013 | SQL injection vulnerability in modules/poll/index.php in DIY-CMS 1.0 allows remote attackers to execute arbitrary SQL co... |
| CVE-2012-6518 | — | — | 1.3% | Jan 24, 2013 | Cross-site request forgery (CSRF) vulnerability in mod.php in DiY-CMS 1.0 allows remote attackers to hijack the authenti... |
| CVE-2012-6517 | — | — | 1.9% | Jan 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in DiY-CMS 1.0 allow remote attackers to inject arbitrary web script... |
| CVE-2012-6516 | — | — | 1.1% | Jan 24, 2013 | SQL injection vulnerability in PHP Ticket System Beta 1 allows remote attackers to execute arbitrary SQL commands via th... |
| CVE-2012-6515 | — | — | 1.5% | Jan 24, 2013 | eFront 3.6.10, 3.6.11 build 15059, and earlier allows remote attackers to obtain sensitive information via invalid cours... |
| CVE-2012-6514 | — | — | 1.2% | Jan 24, 2013 | Cross-site scripting (XSS) vulnerability in the nBill (com_nbill) component 2.3.2 for Joomla! allows remote attackers to... |
| CVE-2012-6513 | — | — | 1.6% | Jan 24, 2013 | Cross-site scripting (XSS) vulnerability in index.php/Admin_Preferences in gpEasy CMS 2.3.3 allows remote attackers to i... |
| CVE-2012-6512 | — | — | 3.3% | Jan 24, 2013 | The Organizer plugin 1.2.1 for WordPress allows remote attackers to obtain the installation path via unspecified vectors... |
| CVE-2012-6511 | — | — | 2.5% | Jan 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in organizer/page/users.php in the Organizer plugin 1.2.1 for WordPr... |
| CVE-2012-6510 | — | — | 1.6% | Jan 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in NetArt Media Car Portal 3.0 allow remote attackers to inject arbi... |
| CVE-2012-6509 | — | — | 6.8% | Jan 24, 2013 | Unrestricted file upload vulnerability in NetArt Media Car Portal 3.0 allows remote attackers to execute arbitrary PHP c... |
| CVE-2012-6508 | — | — | 1.1% | Jan 24, 2013 | Multiple cross-site request forgery (CSRF) vulnerabilities in NetArt Media Car Portal 3.0 allow remote attackers to hija... |
| CVE-2012-6507 | — | — | 1.3% | Jan 24, 2013 | Multiple SQL injection vulnerabilities in admin.php in ChurchCMS 0.0.1 allow remote attackers to execute arbitrary SQL c... |
| CVE-2012-6506 | — | — | 5.3% | Jan 24, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in the Zingiri Web Shop plugin 2.4.0 for WordPress allow remote atta... |
| CVE-2012-6505 | — | — | 3.2% | Jan 24, 2013 | Cross-site scripting (XSS) vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remot... |
| CVE-2012-6504 | — | — | 1.1% | Jan 24, 2013 | SQL injection vulnerability in mods/hours/data/get_hours.php in PHP Volunteer Management 1.0.2 allows remote attackers t... |
| CVE-2012-6503 | — | — | 1.7% | Jan 24, 2013 | Unspecified vulnerability in the NinjaXplorer component before 1.0.7 for Joomla! has unknown impact and attack vectors. |
| CVE-2012-6085 | — | — | 2.9% | Jan 24, 2013 | The read_block function in g10/import.c in GnuPG 1.4.x before 1.4.13 and 2.0.x through 2.0.19, when importing a key, all... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now