2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4208 | — | — | 2.1% | Nov 21, 2012 | The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does n... |
| CVE-2012-4207 | — | — | 2.8% | Nov 21, 2012 | The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird... |
| CVE-2012-4206 | — | — | 0.3% | Nov 21, 2012 | Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 ... |
| CVE-2012-4205 | — | — | 1.6% | Nov 21, 2012 | Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 assign the system principal, rather than... |
| CVE-2012-4204 | — | — | 5.8% | Nov 21, 2012 | The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonke... |
| CVE-2012-4203 | — | — | 3.3% | Nov 21, 2012 | The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarkle... |
| CVE-2012-4202 | — | — | 11.1% | Nov 21, 2012 | Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 1... |
| CVE-2012-4201 | — | — | 3.1% | Nov 21, 2012 | The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.... |
| CVE-2012-5703 | — | — | 2.4% | Nov 20, 2012 | The vSphere API in VMware ESXi 4.1 and ESX 4.1 allows remote attackers to cause a denial of service (host daemon crash) ... |
| CVE-2012-5674 | — | — | 4.1% | Nov 20, 2012 | Unspecified vulnerability in Adobe ColdFusion 10 before Update 5, when Internet Information Services (IIS) is used, allo... |
| CVE-2012-2615 | — | — | — | Nov 20, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5703. Reason: This candidate is a duplicate of... |
| CVE-2012-2589 | — | — | — | Nov 20, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-4344. Reason: This candidate is a duplicate of... |
| CVE-2012-5920 | — | — | 1.0% | Nov 20, 2012 | Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 through 2.5 Final, as used in JBoss Operations ... |
| CVE-2012-5529 | — | — | 1.8% | Nov 20, 2012 | TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of ... |
| CVE-2012-5519 | — | — | 2.1% | Nov 20, 2012 | CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator... |
| CVE-2012-4566 | — | — | 1.5% | Nov 20, 2012 | The DTLS support in radsecproxy before 1.6.2 does not properly verify certificates when there are configuration blocks w... |
| CVE-2012-4563 | — | — | 1.0% | Nov 20, 2012 | Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 Beta and release candidates before 2.4.0 allows... |
| CVE-2012-4523 | — | — | 1.8% | Nov 20, 2012 | radsecproxy before 1.6.1 does not properly verify certificates when there are configuration blocks with CA settings that... |
| CVE-2012-4510 | — | — | 1.2% | Nov 20, 2012 | cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows ... |
| CVE-2012-4366 | — | — | 4.6% | Nov 20, 2012 | Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 ... |
| CVE-2012-3354 | — | — | 1.4% | Nov 20, 2012 | doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers t... |
| CVE-2012-5919 | — | — | 1.8% | Nov 19, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbit... |
| CVE-2012-5918 | — | — | 1.5% | Nov 19, 2012 | razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a ... |
| CVE-2012-5854 | — | — | 5.5% | Nov 19, 2012 | Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or... |
| CVE-2012-4541 | — | — | 1.1% | Nov 19, 2012 | Cross-site scripting (XSS) vulnerability in Piwik before 1.9 allows remote attackers to inject arbitrary web script or H... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now