2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4216 | — | — | 6.1% | Nov 21, 2012 | Use-after-free vulnerability in the gfxFont::GetFontEntry function in Mozilla Firefox before 17.0, Firefox ESR 10.x befo... |
| CVE-2012-4215 | — | — | 6.1% | Nov 21, 2012 | Use-after-free vulnerability in the nsPlaintextEditor::FireClipboardEvent function in Mozilla Firefox before 17.0, Firef... |
| CVE-2012-4214 | — | — | 6.1% | Nov 21, 2012 | Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ES... |
| CVE-2012-4213 | — | — | 6.2% | Nov 21, 2012 | Use-after-free vulnerability in the nsEditor::FindNextLeafNode function in Mozilla Firefox before 17.0, Thunderbird befo... |
| CVE-2012-4212 | — | — | 5.6% | Nov 21, 2012 | Use-after-free vulnerability in the XPCWrappedNative::Mark function in Mozilla Firefox before 17.0, Thunderbird before 1... |
| CVE-2012-4210 | — | — | 3.5% | Nov 21, 2012 | The Style Inspector in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 does not properly restrict the co... |
| CVE-2012-4209 | — | — | 2.5% | Nov 21, 2012 | Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.... |
| CVE-2012-4208 | — | — | 2.1% | Nov 21, 2012 | The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does n... |
| CVE-2012-4207 | — | — | 2.8% | Nov 21, 2012 | The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird... |
| CVE-2012-4206 | — | — | 0.3% | Nov 21, 2012 | Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 ... |
| CVE-2012-4205 | — | — | 1.6% | Nov 21, 2012 | Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 assign the system principal, rather than... |
| CVE-2012-4204 | — | — | 5.8% | Nov 21, 2012 | The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonke... |
| CVE-2012-4203 | — | — | 3.3% | Nov 21, 2012 | The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarkle... |
| CVE-2012-4202 | — | — | 11.1% | Nov 21, 2012 | Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 1... |
| CVE-2012-4201 | — | — | 3.1% | Nov 21, 2012 | The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.... |
| CVE-2012-5703 | — | — | 2.4% | Nov 20, 2012 | The vSphere API in VMware ESXi 4.1 and ESX 4.1 allows remote attackers to cause a denial of service (host daemon crash) ... |
| CVE-2012-5674 | — | — | 4.1% | Nov 20, 2012 | Unspecified vulnerability in Adobe ColdFusion 10 before Update 5, when Internet Information Services (IIS) is used, allo... |
| CVE-2012-2615 | — | — | — | Nov 20, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5703. Reason: This candidate is a duplicate of... |
| CVE-2012-2589 | — | — | — | Nov 20, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-4344. Reason: This candidate is a duplicate of... |
| CVE-2012-5920 | — | — | 1.0% | Nov 20, 2012 | Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 through 2.5 Final, as used in JBoss Operations ... |
| CVE-2012-5529 | — | — | 1.8% | Nov 20, 2012 | TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of ... |
| CVE-2012-5519 | — | — | 2.1% | Nov 20, 2012 | CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator... |
| CVE-2012-4566 | — | — | 1.5% | Nov 20, 2012 | The DTLS support in radsecproxy before 1.6.2 does not properly verify certificates when there are configuration blocks w... |
| CVE-2012-4563 | — | — | 1.0% | Nov 20, 2012 | Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 Beta and release candidates before 2.4.0 allows... |
| CVE-2012-4523 | — | — | 1.8% | Nov 20, 2012 | radsecproxy before 1.6.1 does not properly verify certificates when there are configuration blocks with CA settings that... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now