2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2012-5453SQL injection vulnerability in user/index_inline_editor_submit.php in ATutor AContent 1.2-1 allows remote authenticated ...
CVE-2012-5452Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS 2.2.1 allow remote attackers to inject arbitrary web ...
CVE-2012-5169Multiple cross-site scripting (XSS) vulnerabilities in file_manager/preview_top.php in ATutor AContent before 1.2-2 allo...
CVE-2012-5168ATutor AContent before 1.2-1 allows remote attackers to modify arbitrary user passwords or category names via a direct r...
CVE-2012-5167Multiple SQL injection vulnerabilities in ATutor AContent before 1.2-1 allow remote attackers to execute arbitrary SQL c...
CVE-2012-4990SQL injection vulnerability in admin/campaign-zone-link.php in OpenX 2.8.10 before revision 81823 allows remote attacker...
CVE-2012-4989Cross-site scripting (XSS) vulnerability in admin/plugin-index.php in OpenX 2.8.10 before revision 81823 allows remote a...
CVE-2012-4773Multiple cross-site request forgery (CSRF) vulnerabilities in Subrion CMS before 2.2.3 allow remote attackers to hijack ...
CVE-2012-4772SQL injection vulnerability in register/ in Subrion CMS before 2.2.3 allows remote attackers to execute arbitrary SQL co...
CVE-2012-4771Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS before 2.2.3 allow remote attackers to inject arbitra...
CVE-2012-4518ibacm 1.0.7 creates files with world-writable permissions, which allows local users to overwrite the ib_acm daemon log o...
CVE-2012-4517ibacm before 1.0.6 does not properly manage reference counts for multicast connections, which allows remote attackers to...
CVE-2012-4516librdmacm 1.0.16, when ibacm.port is not specified, connects to port 6125, which allows remote attackers to specify the ...
CVE-2012-4511services/flickr/flickr.c in libsocialweb before 0.25.21 automatically connects to Flickr when no Flickr account is set, ...
CVE-2012-4507The strchr function in procmime.c in Claws Mail (aka claws-mail) 3.8.1 allows remote attackers to cause a denial of serv...
CVE-2012-4506Directory traversal vulnerability in gitolite 3.x before 3.1, when wild card repositories and a pattern matching "../" a...
CVE-2012-4436Buffer overflow in the run_last_args function in client/fwknop.c in fwknop before 2.0.3, when processing --last, might a...
CVE-2012-4435fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial o...
CVE-2012-4232SQL injection vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to execute arbitrary SQL ...
CVE-2012-4231Cross-site scripting (XSS) vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to inject ar...
CVE-2012-3466GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-cache-method is set to "idle" or "timeout," does not properly limit th...
CVE-2012-2679Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-reada...
CVE-2012-1900Cross-site request forgery (CSRF) vulnerability in admin/index.php in RazorCMS 1.2.1 and earlier allows remote attackers...
CVE-2012-1154mod_cluster 1.0.10 before 1.0.10 CP03 and 1.1.x before 1.1.4, as used in JBoss Enterprise Application Platform 5.1.2, wh...
CVE-2012-4751Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.15, 3.0.x befor...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now