2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4399 | HIGH | 7.5 | 12.1% | Oct 9, 2012 | The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via X... |
| CVE-2012-2897 | HIGH | 7.8 | 21.7% | Sep 26, 2012 | The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server ... |
| CVE-2012-5054 | HIGH | 8.8 | 21.2% | Sep 24, 2012 | Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before 11.4.402.265 allows remo... |
| CVE-2012-4969 | HIGH | 8.1 | 81.7% | Sep 18, 2012 | Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 al... |
| CVE-2012-1535 | HIGH | 7.8 | 70.4% | Aug 15, 2012 | Unspecified vulnerability in Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X and before 11.2.202.238 on L... |
| CVE-2012-1856 | HIGH | 8.8 | 72.1% | Aug 15, 2012 | The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Office 2003 Web Compon... |
| CVE-2012-2806 | HIGH | 8.8 | 4.8% | Aug 13, 2012 | Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause... |
| CVE-2012-1854 | HIGH | 7.8 | 21.0% | Jul 10, 2012 | Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; M... |
| CVE-2012-0175 | HIGH | 8.8 | 26.2% | Jul 10, 2012 | The Shell in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, ... |
| CVE-2012-3372 | HIGH | 7.4 | 0.9% | Jul 9, 2012 | The default configuration of Cyberoam UTM appliances uses the same Certification Authority certificate and same private ... |
| CVE-2012-1889 | HIGH | 8.8 | 83.6% | Jun 13, 2012 | Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attacker... |
| CVE-2012-1879 | HIGH | 8.1 | 19.6% | Jun 12, 2012 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2012-1867 | HIGH | 8.4 | 1.2% | Jun 12, 2012 | Integer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, ... |
| CVE-2012-2034 | HIGH | 7.5 | 7.8% | Jun 9, 2012 | Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x ... |
| CVE-2012-1610 | HIGH | 7.5 | 4.7% | Jun 5, 2012 | Integer overflow in the GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-4 allows remote attack... |
| CVE-2012-1185 | HIGH | 7.8 | 30.9% | Jun 5, 2012 | Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remot... |
| CVE-2012-0247 | HIGH | 8.8 | 3.8% | Jun 5, 2012 | ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly ex... |
| CVE-2012-1097 | HIGH | 7.8 | 0.4% | May 17, 2012 | The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and... |
| CVE-2012-0207 | HIGH | 7.5 | 20.5% | May 17, 2012 | The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a den... |
| CVE-2012-0044 | HIGH | 7.8 | 0.4% | May 17, 2012 | Integer overflow in the drm_mode_dirtyfb_ioctl function in drivers/gpu/drm/drm_crtc.c in the Direct Rendering Manager (D... |
| CVE-2012-0180 | HIGH | 7.8 | 1.3% | May 9, 2012 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2012-0158 | HIGH | 8.8 | 100.0% | Apr 10, 2012 | The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.OCX in the Common Controls... |
| CVE-2012-0151 | HIGH | 7.8 | 88.8% | Apr 10, 2012 | The Authenticode Signature Verification function in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V... |
| CVE-2012-2055 | HIGH | 7.5 | 1.8% | Apr 5, 2012 | GitHub Enterprise before 20120304 does not properly restrict the use of a hash to provide values for a model's attribute... |
| CVE-2012-0384 | HIGH | 7.2 | 3.9% | Mar 29, 2012 | Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS throug... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now