2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4490 | — | — | 1.2% | Oct 31, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Excluded Users module 6.x-1.x before 6.x-1.1 for Drupal allow... |
| CVE-2012-4489 | — | — | 1.5% | Oct 31, 2012 | Open redirect vulnerability in the securelogin_secure_redirect function in the Secure Login module 7.x-1.x before 7.x-1.... |
| CVE-2012-4488 | — | — | 1.4% | Oct 31, 2012 | The Location module 6.x before 6.x-3.2 and 7.x before 7.x-3.0-alpha1 for Drupal does not properly check user or node acc... |
| CVE-2012-4485 | — | — | 1.3% | Oct 31, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the galleryformatter_field_formatter_view functiuon in galleryfor... |
| CVE-2012-4484 | — | — | 1.2% | Oct 31, 2012 | Cross-site scripting (XSS) vulnerability in the administrative interface in the Campaign Monitor module before 6.x-2.5 f... |
| CVE-2012-4483 | — | — | 1.4% | Oct 31, 2012 | The commons_discussion_views_default_views function in modules/features/commons_discussion/commons_discussion.views_defa... |
| CVE-2012-4482 | — | — | 1.3% | Oct 31, 2012 | The Ubercart SecureTrading Payment Method module 6.x for Drupal does not properly verify payment notification informatio... |
| CVE-2012-2625 | — | — | 0.9% | Oct 31, 2012 | The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x allows local para-virtualiz... |
| CVE-2012-5692 | — | — | 24.9% | Oct 31, 2012 | Unspecified vulnerability in admin/sources/base/core.php in Invision Power Board (aka IPB or IP.Board) 3.1.x through 3.3... |
| CVE-2012-4934 | — | — | 1.3% | Oct 31, 2012 | TomatoCart 1.1.7, when the PayPal Express Checkout module is enabled in sandbox mode, allows remote authenticated users ... |
| CVE-2012-4610 | — | — | 0.6% | Oct 31, 2012 | EMC Avamar Client for VMware 6.1 stores the cleartext server root password on the proxy client, which might allow remote... |
| CVE-2012-4547 | — | — | 5.8% | Oct 31, 2012 | Unspecified vulnerability in awredir.pl in AWStats before 7.1 has unknown impact and attack vectors. |
| CVE-2012-5979 | — | — | — | Oct 31, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5079. Reason: This candidate is a duplicate of ... |
| CVE-2012-0023 | — | — | 4.9% | Oct 30, 2012 | Double free vulnerability in the get_chunk_header function in modules/demux/ty.c in VideoLAN VLC media player 0.9.0 thro... |
| CVE-2012-4663 | — | — | 1.7% | Oct 29, 2012 | The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Modul... |
| CVE-2012-4662 | — | — | 1.7% | Oct 29, 2012 | The DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Modul... |
| CVE-2012-4661 | — | — | 4.0% | Oct 29, 2012 | Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devi... |
| CVE-2012-4660 | — | — | 1.8% | Oct 29, 2012 | The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (... |
| CVE-2012-4659 | — | — | 2.6% | Oct 29, 2012 | The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series device... |
| CVE-2012-4643 | — | — | 1.5% | Oct 29, 2012 | The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in ... |
| CVE-2012-4196 | — | — | 3.3% | Oct 29, 2012 | Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 1... |
| CVE-2012-4195 | — | — | 1.9% | Oct 29, 2012 | The nsLocation::CheckURL function in Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before ... |
| CVE-2012-4194 | — | — | 2.8% | Oct 29, 2012 | Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 1... |
| CVE-2012-4447 | — | — | 6.7% | Oct 28, 2012 | Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of servic... |
| CVE-2012-5470 | — | — | 5.8% | Oct 26, 2012 | libpng_plugin in VideoLAN VLC media player 2.0.3 allows remote attackers to cause a denial of service (application crash... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now