2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4510cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows ...
CVE-2012-4366Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 ...
CVE-2012-3354doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers t...
CVE-2012-5919Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbit...
CVE-2012-5918razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a ...
CVE-2012-5854Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or...
CVE-2012-4541Cross-site scripting (XSS) vulnerability in Piwik before 1.9 allows remote attackers to inject arbitrary web script or H...
CVE-2012-4423The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of servi...
CVE-2012-4233LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a de...
CVE-2012-4225NVIDIA UNIX graphics driver before 295.71 and before 304.32 allows local users to write to arbitrary physical memory loc...
CVE-2012-4533Cross-site scripting (XSS) vulnerability in the "extra" details in the DiffSource._get_row function in lib/viewvc.py in ...
CVE-2012-4552Stack-based buffer overflow in the error function in ssg/ssgParser.cxx in PLIB 1.8.5 allows remote attackers to execute ...
CVE-2012-4520The django.http.HttpRequest.get_host function in Django 1.3.x before 1.3.4 and 1.4.x before 1.4.2 allows remote attacker...
CVE-2012-4433Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attac...
CVE-2012-4417GlusterFS 3.3.0, as used in Red Hat Storage server 2.0, allows local users to overwrite arbitrary files via a symlink at...
CVE-2012-4950Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows r...
CVE-2012-4947Agile FleetCommander and FleetCommander Kiosk before 4.08 store database credentials in cleartext, which allows remote a...
CVE-2012-4946Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easi...
CVE-2012-4945Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary commands via unspe...
CVE-2012-4944Multiple unrestricted file upload vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow rem...
CVE-2012-4943Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 ...
CVE-2012-4942Multiple cross-site scripting (XSS) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow r...
CVE-2012-4941Multiple SQL injection vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attacke...
CVE-2012-4938Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated adminis...
CVE-2012-4937Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web session...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now