2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-2669The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.4.5, does not v...
CVE-2012-6314Citrix XenDesktop Virtual Desktop Agent (VDA) 5.6.x before 5.6.200, when making changes to the server-side policy that c...
CVE-2012-5625OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not prope...
CVE-2012-5483tools/sample_data.sh in OpenStack Keystone 2012.1.3, when access to Amazon Elastic Compute Cloud (Amazon EC2) is configu...
CVE-2012-5161The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code ...
CVE-2012-0962Aptdaemon 0.43 in Ubuntu 11.10 and 12.04 LTS uses short IDs when importing PPA GPG keys from a keyserver, which allows r...
CVE-2012-0961Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu13.6, 0.8.16~exp12ubuntu10.x before 0.8.16~exp12ubuntu10.7, and 0.9.7....
CVE-2012-0958content/unity-api.js in the unity-firefox-extension extension 2.4.1 for Firefox exposes the toDataURL function in an API...
CVE-2012-6299Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attacke...
CVE-2012-6298Unspecified vulnerability in CA IdentityMinder r12.0 through CR16, r12.5 before SP15, and r12.6 GA allows remote attacke...
CVE-2012-5664Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6496, CVE-2012-6497. Reason: this candidate was ...
CVE-2012-4616Directory traversal vulnerability in the Web UI in EMC Data Protection Advisor (DPA) 5.6 through SP1, 5.7 through SP1, a...
CVE-2012-5951Unspecified vulnerability in IBM Tivoli NetView 1.4, 5.1 through 5.4, and 6.1 on z/OS allows local users to gain privile...
CVE-2012-4816IBM Rational Automation Framework (RAF) 3.x through 3.0.0.5 allows remote attackers to bypass intended Env Gen Wizard (a...
CVE-2012-5591Cross-site scripting (XSS) vulnerability in the Zero Point module 6.x-1.x before 6.x-1.18 and 7.x-1.x before 7.x-1.4 for...
CVE-2012-5590SQL injection vulnerability in the Webmail Plus module for Drupal allows remote attackers to execute arbitrary SQL comma...
CVE-2012-5589The MultiLink module 6.x-2.x before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal does not properly check node permissio...
CVE-2012-5588The Email Field module 6.x-1.x before 6.x-1.3 for Drupal, when using a field permission module and the field contact fie...
CVE-2012-5587Cross-site scripting (XSS) vulnerability in the Email Field module 6.x-1.x before 6.x-1.3 for Drupal allows remote attac...
CVE-2012-5586The Services module 6.x-3.x before 6.x-3.3 and 7.x-3.x before 7.x-3.3 for Drupal allows remote authenticated users with ...
CVE-2012-5585Cross-site scripting (XSS) vulnerability in the Mixpanel module 6.x-1.x before 6.x-1.1 in Drupal allows remote authentic...
CVE-2012-5584The Table of Contents module 6.x-3.x before 6.x-3.8 for Drupal does not properly check node permissions, which allows re...
CVE-2012-5183The Loctouch application 3.4.6 and earlier for Android allows attackers to obtain sensitive information about logged loc...
CVE-2012-5182The Loctouch application 3.4.6 and earlier for Android does not properly handle implicit intents, which allows attackers...
CVE-2012-5180The Opera Mobile application before 12.1 and Opera Mini application before 7.5 for Android do not properly implement the...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now