2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2253 | — | — | 1.8% | Nov 24, 2012 | Cross-site scripting (XSS) vulnerability in group/members.php in Mahara 1.5.x before 1.5.7 and 1.6.x before 1.6.2 allows... |
| CVE-2012-2247 | — | — | 1.8% | Nov 24, 2012 | Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to ... |
| CVE-2012-2246 | — | — | 1.3% | Nov 24, 2012 | Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to conduct clickjacking attacks to delete arbit... |
| CVE-2012-2244 | — | — | 1.7% | Nov 24, 2012 | Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary program... |
| CVE-2012-2243 | — | — | 2.9% | Nov 24, 2012 | Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to ... |
| CVE-2012-0960 | — | — | 3.5% | Nov 24, 2012 | Unity integration extension (unity-firefox-extension) before 2.4.1 for Firefox does not properly handle callbacks, which... |
| CVE-2012-0959 | — | — | 0.4% | Nov 24, 2012 | Remote Login Service (RLS) 1.0.0 does not properly clear account information when switching users, which might allow phy... |
| CVE-2012-6036 | — | — | 0.4% | Nov 23, 2012 | The (1) memc_save_get_next_page, (2) tmemc_restore_put_page and (3) tmemc_restore_flush_page functions in the Transcende... |
| CVE-2012-6035 | — | — | 0.4% | Nov 23, 2012 | The do_tmem_destroy_pool function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly validate ... |
| CVE-2012-6034 | — | — | 0.4% | Nov 23, 2012 | The (1) tmemc_save_get_next_page and (2) tmemc_save_get_next_inv functions and the (3) TMEMC_SAVE_GET_POOL_UUID sub-oper... |
| CVE-2012-6033 | — | — | 0.4% | Nov 23, 2012 | The do_tmem_control function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly check privileg... |
| CVE-2012-6032 | — | — | 0.4% | Nov 23, 2012 | Multiple integer overflows in the (1) tmh_copy_from_client and (2) tmh_copy_to_client functions in the Transcendent Memo... |
| CVE-2012-6031 | — | — | 0.4% | Nov 23, 2012 | The do_tmem_get function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause ... |
| CVE-2012-6030 | — | — | 0.4% | Nov 23, 2012 | The do_tmem_op function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a... |
| CVE-2012-4602 | — | — | 1.8% | Nov 23, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in admin/code/tce_select_users_popup.php in Nicola Asuni TCExam befo... |
| CVE-2012-4601 | — | — | 1.6% | Nov 23, 2012 | Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with leve... |
| CVE-2012-4411 | — | — | 0.4% | Nov 23, 2012 | The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource inf... |
| CVE-2012-3516 | — | — | 0.4% | Nov 23, 2012 | The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows loca... |
| CVE-2012-3515 | — | — | 0.5% | Nov 23, 2012 | Qemu, as used in Xen 4.0, 4.1 and possibly other products, when emulating certain devices with a virtual console backend... |
| CVE-2012-3498 | — | — | 0.4% | Nov 23, 2012 | PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix XenServer 6.0.2 and earlier allows local HVM guest OS kernels to cause ... |
| CVE-2012-3497 | — | — | 0.4% | Nov 23, 2012 | (1) TMEMC_SAVE_GET_CLIENT_WEIGHT, (2) TMEMC_SAVE_GET_CLIENT_CAP, (3) TMEMC_SAVE_GET_CLIENT_FLAGS and (4) TMEMC_SAVE_END ... |
| CVE-2012-3496 | — | — | 0.4% | Nov 23, 2012 | XENMEM_populate_physmap in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlier, when translating paging mode i... |
| CVE-2012-3495 | — | — | 0.4% | Nov 23, 2012 | The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the r... |
| CVE-2012-3494 | — | — | 0.4% | Nov 23, 2012 | The set_debugreg hypercall in include/asm-x86/debugreg.h in Xen 4.0, 4.1, and 4.2, and Citrix XenServer 6.0.2 and earlie... |
| CVE-2012-3431 | — | — | 1.8% | Nov 23, 2012 | The Teiid Java Database Connectivity (JDBC) socket, as used in JBoss Enterprise Data Services Platform before 5.3.0, doe... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now