2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2012-4399HIGH7.5The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via X...
CVE-2012-2897HIGH7.8The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server ...
CVE-2012-5054HIGH8.8Integer overflow in the copyRawDataTo method in the Matrix3D class in Adobe Flash Player before 11.4.402.265 allows remo...
CVE-2012-4969HIGH8.1Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 al...
CVE-2012-1535HIGH7.8Unspecified vulnerability in Adobe Flash Player before 11.3.300.271 on Windows and Mac OS X and before 11.2.202.238 on L...
CVE-2012-1856HIGH8.8The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office 2003 SP3, Office 2003 Web Compon...
CVE-2012-2806HIGH8.8Heap-based buffer overflow in the get_sos function in jdmarker.c in libjpeg-turbo 1.2.0 allows remote attackers to cause...
CVE-2012-1854HIGH7.8Untrusted search path vulnerability in VBE6.dll in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; M...
CVE-2012-0175HIGH8.8The Shell in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, ...
CVE-2012-3372HIGH7.4The default configuration of Cyberoam UTM appliances uses the same Certification Authority certificate and same private ...
CVE-2012-1889HIGH8.8Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attacker...
CVE-2012-1879HIGH8.1Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe...
CVE-2012-1867HIGH8.4Integer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, ...
CVE-2012-2034HIGH7.5Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x ...
CVE-2012-1610HIGH7.5Integer overflow in the GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-4 allows remote attack...
CVE-2012-1185HIGH7.8Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remot...
CVE-2012-0247HIGH8.8ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly ex...
CVE-2012-1097HIGH7.8The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and...
CVE-2012-0207HIGH7.5The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a den...
CVE-2012-0044HIGH7.8Integer overflow in the drm_mode_dirtyfb_ioctl function in drivers/gpu/drm/drm_crtc.c in the Direct Rendering Manager (D...
CVE-2012-0180HIGH7.8win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W...
CVE-2012-0158HIGH8.8The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.OCX in the Common Controls...
CVE-2012-0151HIGH7.8The Authenticode Signature Verification function in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows V...
CVE-2012-2055HIGH7.5GitHub Enterprise before 20120304 does not properly restrict the use of a hash to provide values for a model's attribute...
CVE-2012-0384HIGH7.2Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS before 3.1.2S, 3.2.xS throug...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now