2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-2377JGroups diagnostics service in JBoss Enterprise Portal Platform before 5.2.2, SOA Platform before 5.3.0, and BRMS Platfo...
CVE-2012-2086SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows ...
CVE-2012-1167The JBoss Server in JBoss Enterprise Application Platform 5.1.x before 5.1.2 and 5.2.x before 5.2.2, Web Platform before...
CVE-2012-0818RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document...
CVE-2012-5864These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directl...
CVE-2012-5863These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with...
CVE-2012-5862These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in th...
CVE-2012-5861These Sinapsi devices do not check the validity of the data before executing queries. By accessing the SQL table of cer...
CVE-2012-5759The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 allows remote authenticat...
CVE-2012-5758The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 does not require authenti...
CVE-2012-5756The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2, when a collective config...
CVE-2012-5173Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vec...
CVE-2012-2211Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 ...
CVE-2012-2084Cross-site scripting (XSS) vulnerability in the Printer, email and PDF versions module 6.x-1.x before 6.x-1.15 and 7.x-1...
CVE-2012-5526CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might a...
CVE-2012-4539Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to ca...
CVE-2012-4537Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2...
CVE-2012-4536The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to ca...
CVE-2012-4535Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (X...
CVE-2012-4527Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of servi...
CVE-2012-4426Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a...
CVE-2012-4409Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted ...
CVE-2012-3513munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new co...
CVE-2012-3512Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, ...
CVE-2012-5843Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now