2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2377 | — | — | 1.4% | Nov 23, 2012 | JGroups diagnostics service in JBoss Enterprise Portal Platform before 5.2.2, SOA Platform before 5.3.0, and BRMS Platfo... |
| CVE-2012-2086 | — | — | 2.4% | Nov 23, 2012 | SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows ... |
| CVE-2012-1167 | — | — | 1.6% | Nov 23, 2012 | The JBoss Server in JBoss Enterprise Application Platform 5.1.x before 5.1.2 and 5.2.x before 5.2.2, Web Platform before... |
| CVE-2012-0818 | — | — | 3.2% | Nov 23, 2012 | RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document... |
| CVE-2012-5864 | — | — | 4.9% | Nov 23, 2012 | These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directl... |
| CVE-2012-5863 | — | — | 24.8% | Nov 23, 2012 | These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with... |
| CVE-2012-5862 | — | — | 11.9% | Nov 23, 2012 | These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in th... |
| CVE-2012-5861 | — | — | 4.1% | Nov 23, 2012 | These Sinapsi devices do not check the validity of the data before executing queries. By accessing the SQL table of cer... |
| CVE-2012-5759 | — | — | 2.2% | Nov 23, 2012 | The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 allows remote authenticat... |
| CVE-2012-5758 | — | — | 2.4% | Nov 23, 2012 | The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 does not require authenti... |
| CVE-2012-5756 | — | — | 1.3% | Nov 23, 2012 | The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2, when a collective config... |
| CVE-2012-5173 | — | — | 1.3% | Nov 23, 2012 | Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vec... |
| CVE-2012-2211 | — | — | 1.2% | Nov 22, 2012 | Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 ... |
| CVE-2012-2084 | — | — | 2.3% | Nov 22, 2012 | Cross-site scripting (XSS) vulnerability in the Printer, email and PDF versions module 6.x-1.x before 6.x-1.15 and 7.x-1... |
| CVE-2012-5526 | — | — | 3.3% | Nov 21, 2012 | CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might a... |
| CVE-2012-4539 | — | — | 0.4% | Nov 21, 2012 | Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to ca... |
| CVE-2012-4537 | — | — | 0.4% | Nov 21, 2012 | Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2... |
| CVE-2012-4536 | — | — | 0.4% | Nov 21, 2012 | The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to ca... |
| CVE-2012-4535 | — | — | 0.4% | Nov 21, 2012 | Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (X... |
| CVE-2012-4527 | — | — | 7.7% | Nov 21, 2012 | Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of servi... |
| CVE-2012-4426 | — | — | 4.7% | Nov 21, 2012 | Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a... |
| CVE-2012-4409 | — | — | 15.0% | Nov 21, 2012 | Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted ... |
| CVE-2012-3513 | — | — | 2.4% | Nov 21, 2012 | munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new co... |
| CVE-2012-3512 | — | — | 0.6% | Nov 21, 2012 | Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, ... |
| CVE-2012-5843 | — | — | 5.8% | Nov 21, 2012 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now