2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-5623HIGH7.5Squirrelmail 4.0 uses the outdated MD5 hash algorithm for passwords.
CVE-2012-1903MEDIUM5.4XSS in Telligent Community 5.6.583.20496 via a flash file and related to the allowScriptAccess parameter.
CVE-2012-1500MEDIUM5.4Stored XSS vulnerability in UpdateFieldJson.jspa in JIRA 4.4.3 and GreenHopper before 5.9.8 allows an attacker to inject...
CVE-2012-0951HIGH7.8A Memory Corruption Vulnerability exists in NVIDIA Graphics Drivers 29549 due to an unknown function in the file proc/dr...
CVE-2012-0810MEDIUM5.5The int3 handler in the Linux kernel before 3.3 relies on a per-CPU debug stack, which allows local users to cause a den...
CVE-2012-6721MEDIUM6.3Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in S...
CVE-2012-6720MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitr...
CVE-2012-2517MEDIUM6.1Cross-site scripting (XSS) vulnerability in PrestaShop before 1.4.9 allows remote attackers to inject arbitrary web scri...
CVE-2012-2452MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in pragmaMx 1.x before 1.12.2 allow remote attackers to inject arbit...
CVE-2012-2216Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6720 and CVE-2012-6721. Reason: this candidate w...
CVE-2012-1124CRITICAL9.8SQL injection vulnerability in search.php in phxEventManager 2.0 beta 5 allows remote attackers to execute arbitrary SQL...
CVE-2012-4519MEDIUM6.1Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS.
CVE-2012-5828MEDIUM6.5BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error
CVE-2012-2204MEDIUM5.5InfoSphere Guardium aix_ktap module: DoS
CVE-2012-1994MEDIUM5.7HP Systems Insight Manager before 7.0 allows a remote user on adjacent network to access information
CVE-2012-6611CRITICAL9.8An issue was discovered in Polycom Web Management Interface G3/HDX 8000 HD with Durango 2.6.0 4740 software and embedded...
CVE-2012-6449MEDIUM5.4The clientconf.html and detailbw.html pages in x3 in cPanel & WHM 11.34.0 (build 8) have a XSS vulnerability.
CVE-2012-6666MEDIUM6.1vBSeo before 3.6.0PL2 allows XSS via the member.php u parameter.
CVE-2012-5570MEDIUM4.3The Basic webmail module 6.x-1.x before 6.x-1.2 for Drupal allows remote authenticated users with the "access basic_webm...
CVE-2012-4512HIGH8.8The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service ...
CVE-2012-4381HIGH8.1MediaWiki before 1.18.5, and 1.19.x before 1.19.2 saves passwords in the local database, (1) which could make it easier ...
CVE-2012-4029MEDIUM6.1Cross-site scripting (XSS) vulnerability in main/dropbox/index.php in Chamilo LMS before 1.8.8.6 allows remote attackers...
CVE-2012-6686Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4357. Reason: This candidate is a duplicate of C...
CVE-2012-1567HIGH7.5LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintUpdate.
CVE-2012-1566HIGH7.5LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintNanny.

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now