2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-4510——cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows ...
CVE-2012-4366——Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 ...
CVE-2012-3354——doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers t...
CVE-2012-5919——Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbit...
CVE-2012-5918——razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a ...
CVE-2012-5854——Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or...
CVE-2012-4541——Cross-site scripting (XSS) vulnerability in Piwik before 1.9 allows remote attackers to inject arbitrary web script or H...
CVE-2012-4423——The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of servi...
CVE-2012-4233——LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a de...
CVE-2012-4225——NVIDIA UNIX graphics driver before 295.71 and before 304.32 allows local users to write to arbitrary physical memory loc...
CVE-2012-4533——Cross-site scripting (XSS) vulnerability in the "extra" details in the DiffSource._get_row function in lib/viewvc.py in ...
CVE-2012-4552——Stack-based buffer overflow in the error function in ssg/ssgParser.cxx in PLIB 1.8.5 allows remote attackers to execute ...
CVE-2012-4520——The django.http.HttpRequest.get_host function in Django 1.3.x before 1.3.4 and 1.4.x before 1.4.2 allows remote attacker...
CVE-2012-4433——Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attac...
CVE-2012-4417——GlusterFS 3.3.0, as used in Red Hat Storage server 2.0, allows local users to overwrite arbitrary files via a symlink at...
CVE-2012-4950——Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows r...
CVE-2012-4947——Agile FleetCommander and FleetCommander Kiosk before 4.08 store database credentials in cleartext, which allows remote a...
CVE-2012-4946——Agile FleetCommander and FleetCommander Kiosk before 4.08 use an XOR format for password encryption, which makes it easi...
CVE-2012-4945——Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attackers to execute arbitrary commands via unspe...
CVE-2012-4944——Multiple unrestricted file upload vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow rem...
CVE-2012-4943——Multiple cross-site request forgery (CSRF) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 ...
CVE-2012-4942——Multiple cross-site scripting (XSS) vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow r...
CVE-2012-4941——Multiple SQL injection vulnerabilities in Agile FleetCommander and FleetCommander Kiosk before 4.08 allow remote attacke...
CVE-2012-4938——Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated adminis...
CVE-2012-4937——Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web session...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now