2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-2377——JGroups diagnostics service in JBoss Enterprise Portal Platform before 5.2.2, SOA Platform before 5.3.0, and BRMS Platfo...
CVE-2012-2086——SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows ...
CVE-2012-1167——The JBoss Server in JBoss Enterprise Application Platform 5.1.x before 5.1.2 and 5.2.x before 5.2.2, Web Platform before...
CVE-2012-0818——RESTEasy before 2.3.1 allows remote attackers to read arbitrary files via an external entity reference in a DOM document...
CVE-2012-5864——These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directl...
CVE-2012-5863——These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with...
CVE-2012-5862——These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in th...
CVE-2012-5861——These Sinapsi devices do not check the validity of the data before executing queries. By accessing the SQL table of cer...
CVE-2012-5759——The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 allows remote authenticat...
CVE-2012-5758——The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 does not require authenti...
CVE-2012-5756——The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2, when a collective config...
CVE-2012-5173——Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vec...
CVE-2012-2211——Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 ...
CVE-2012-2084——Cross-site scripting (XSS) vulnerability in the Printer, email and PDF versions module 6.x-1.x before 6.x-1.15 and 7.x-1...
CVE-2012-5526——CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might a...
CVE-2012-4539——Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to ca...
CVE-2012-4537——Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2...
CVE-2012-4536——The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to ca...
CVE-2012-4535——Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (X...
CVE-2012-4527——Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of servi...
CVE-2012-4426——Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a...
CVE-2012-4409——Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted ...
CVE-2012-3513——munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new co...
CVE-2012-3512——Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, ...
CVE-2012-5843——Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and ...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now