2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4473The Restrict node page view module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the "view an...
CVE-2012-4472Unrestricted file upload vulnerability in upload.php in the Drag & Drop Gallery module 6.x-1.5 and earlier for Drupal al...
CVE-2012-4471The Search Autocomplete module 7.x-2.x before 7.x-2.4 for Drupal does not properly restrict access to the module admin p...
CVE-2012-4470The Listhandler module 6.x-1.x before 6.x-1.1 for Drupal does not properly check permissions when importing emails, whic...
CVE-2012-4469Cross-site scripting (XSS) vulnerability in the Hashcash module 6.x-2.x before 6.x-2.6 and 7.x-2.x before 7.x-2.2 for Dr...
CVE-2012-4468Cross-site scripting (XSS) vulnerability in the Privatemsg module 7.x-1.x before 7.x-1.3 for Drupal allows remote attack...
CVE-2012-5568Apache Tomcat through 7.0.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP reques...
CVE-2012-4834Directory traversal vulnerability in LayerLoader.jsp in the theme component in IBM WebSphere Portal 7.0.0.1 and 7.0.0.2 ...
CVE-2012-4557The mod_proxy_ajp module in the Apache HTTP Server 2.2.12 through 2.2.21 places a worker node into an error state upon d...
CVE-2012-5174The KYOCERA AH-K3001V, AH-K3002V, WX300K, WX310K, WX320K, and WX320KR devices allow remote attackers to cause a denial o...
CVE-2012-4222drivers/gpu/msm/kgsl.c in the Qualcomm Innovation Center (QuIC) Graphics KGSL kernel-mode driver for Android 2.3 through...
CVE-2012-4221Integer overflow in diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver f...
CVE-2012-4220diagchar_core.c in the Qualcomm Innovation Center (QuIC) Diagnostics (aka DIAG) kernel-mode driver for Android 2.3 throu...
CVE-2012-5530The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite ar...
CVE-2012-4841Unspecified vulnerability in Tivoli Endpoint Manager for Remote Control Broker 8.2 before 8.2.1-TIV-TEMRC821-IF0002 allo...
CVE-2012-3271Unspecified vulnerability on the HP Integrated Lights-Out 3 (aka iLO3) with firmware before 1.50 and Integrated Lights-O...
CVE-2012-6051Google CityHash computes hash values without properly restricting the ability to trigger hash collisions predictably, wh...
CVE-2012-5373Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability t...
CVE-2012-5372Rubinius computes hash values without properly restricting the ability to trigger hash collisions predictably, which all...
CVE-2012-5371Ruby (aka CRuby) 1.9 before 1.9.3-p327 and 2.0 before r37575 computes hash values without properly restricting the abili...
CVE-2012-5370JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows...
CVE-2012-2739Oracle Java SE before 7 Update 6, and OpenJDK 7 before 7u6 build 12 and 8 before build 39, computes hash values without ...
CVE-2012-5136Google Chrome before 23.0.1271.91 does not properly perform a cast of an unspecified variable during handling of the INP...
CVE-2012-5135Use-after-free vulnerability in Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service o...
CVE-2012-5134Heap-based buffer underflow in the xmlParseAttValueComplex function in parser.c in libxml2 2.9.0 and earlier, as used in...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now