2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-5595 | — | — | — | Dec 5, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6056. Reason: This candidate is a reservation du... |
| CVE-2012-5594 | — | — | — | Dec 5, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6054. Reason: This candidate is a reservation du... |
| CVE-2012-5593 | — | — | — | Dec 5, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6053. Reason: This candidate is a reservation du... |
| CVE-2012-5592 | — | — | — | Dec 5, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6052. Reason: This candidate is a reservation du... |
| CVE-2012-4985 | — | — | 1.7% | Dec 5, 2012 | The Forescout CounterACT NAC device 6.3.4.1 does not block ARP and ICMP traffic from unrecognized clients, which allows ... |
| CVE-2012-4983 | — | — | 0.9% | Dec 5, 2012 | Multiple cross-site scripting (XSS) vulnerabilities on the Forescout CounterACT NAC device before 7.0 allow remote attac... |
| CVE-2012-4982 | — | — | 8.7% | Dec 5, 2012 | Open redirect vulnerability in assets/login on the Forescout CounterACT NAC device before 7.0 allows remote attackers to... |
| CVE-2012-4862 | — | — | 0.2% | Dec 5, 2012 | The Host Connect emulator in IBM Rational Developer for System z 7.1 through 8.5.1 does not properly store the SSL certi... |
| CVE-2012-4609 | — | — | 1.0% | Dec 5, 2012 | The web interface in EMC RSA NetWitness Informer before 2.0.5.6 allows remote attackers to conduct clickjacking attacks ... |
| CVE-2012-4608 | — | — | 0.6% | Dec 5, 2012 | Cross-site request forgery (CSRF) vulnerability in the web interface in EMC RSA NetWitness Informer before 2.0.5.6 allow... |
| CVE-2012-4347 | — | — | 58.8% | Dec 5, 2012 | Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow r... |
| CVE-2012-3317 | — | — | 0.4% | Dec 5, 2012 | IBM WebSphere Message Broker 6.1 before 6.1.0.11, 7.0 before 7.0.0.5, and 8.0 before 8.0.0.2 has incorrect ownership of ... |
| CVE-2012-6067 | — | — | 3.1% | Dec 4, 2012 | freeFTPd.exe in freeFTPd through 1.0.11 allows remote attackers to bypass authentication via a crafted SFTP session, as ... |
| CVE-2012-6066 | — | — | 39.5% | Dec 4, 2012 | freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to bypass authentication via a crafted session, as demons... |
| CVE-2012-5975 | — | — | 35.9% | Dec 4, 2012 | The SSH USERAUTH CHANGE REQUEST feature in SSH Tectia Server 6.0.4 through 6.0.20, 6.1.0 through 6.1.12, 6.2.0 through 6... |
| CVE-2012-5138 | — | — | 1.5% | Dec 4, 2012 | Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors. |
| CVE-2012-5137 | — | — | 2.5% | Dec 4, 2012 | Use-after-free vulnerability in Google Chrome before 23.0.1271.95 allows remote attackers to cause a denial of service o... |
| CVE-2012-5129 | — | — | 1.1% | Dec 4, 2012 | Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cau... |
| CVE-2012-6065 | — | — | 1.1% | Dec 3, 2012 | The OM Maximenu module 6.x-1.43 and earlier for Drupal, when the "Title has PHP" option is enabled, allows remote authen... |
| CVE-2012-6064 | — | — | 1.4% | Dec 3, 2012 | Directory traversal vulnerability in lib/filemanager/imagemanager/images.php in CMS Made Simple (CMSMS) before 1.11.2.1 ... |
| CVE-2012-5859 | — | — | 1.6% | Dec 3, 2012 | Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted re... |
| CVE-2012-5858 | — | — | 4.3% | Dec 3, 2012 | Samsung Kies Air 2.1.207051 and 2.1.210161 relies on the IP address for authentication, which allows remote man-in-the-m... |
| CVE-2012-5569 | — | — | 1.8% | Dec 3, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Basic webmail module 6.x-1.x before 6.x-1.2 for Drupal allow ... |
| CVE-2012-5559 | — | — | 1.8% | Dec 3, 2012 | Cross-site scripting (XSS) vulnerability in the page manager node view task in the Chaos tool suite (ctools) module 6.x-... |
| CVE-2012-5557 | — | — | 1.4% | Dec 3, 2012 | The User Read-Only module 6.x-1.x before 6.x-1.4 and 7.x-1.x before 7.x-1.4 for Drupal, does not properly assign roles w... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now