2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4936 | — | — | 1.5% | Nov 18, 2012 | The web interface in Pattern Insight 2.3 allows remote attackers to conduct clickjacking attacks via a FRAME element. |
| CVE-2012-4935 | — | — | 0.7% | Nov 18, 2012 | Cross-site request forgery (CSRF) vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to h... |
| CVE-2012-4959 | — | — | 71.2% | Nov 18, 2012 | Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to upload and ex... |
| CVE-2012-4958 | — | — | 73.5% | Nov 18, 2012 | Directory traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbitrar... |
| CVE-2012-4957 | — | — | 67.1% | Nov 18, 2012 | Absolute path traversal vulnerability in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to read arbi... |
| CVE-2012-4956 | — | — | 37.7% | Nov 18, 2012 | Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary co... |
| CVE-2012-4575 | — | — | 2.1% | Nov 18, 2012 | The add_database function in objects.c in the pgbouncer pooler 1.5.2 for PostgreSQL allows remote attackers to cause a d... |
| CVE-2012-5917 | — | — | 2.5% | Nov 17, 2012 | SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff fil... |
| CVE-2012-5916 | — | — | 1.3% | Nov 17, 2012 | Neocrome Seditio build 161 allows remote attackers to obtain sensitive information via a direct request to (1) docs/new/... |
| CVE-2012-5915 | — | — | 1.2% | Nov 17, 2012 | Neocrome Seditio build 161 and earlier allows remote attackers to obtain sensitive information via direct request to (1)... |
| CVE-2012-5914 | — | — | 1.3% | Nov 17, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the sed_import function in system/functions.php in Neocrome Sedit... |
| CVE-2012-5913 | — | — | 8.7% | Nov 17, 2012 | Cross-site scripting (XSS) vulnerability in wp-integrator.php in the WordPress Integrator module 1.32 for WordPress allo... |
| CVE-2012-5912 | — | — | 2.4% | Nov 17, 2012 | Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via... |
| CVE-2012-5911 | — | — | 1.3% | Nov 17, 2012 | Cross-site scripting (XSS) vulnerability in blogs/blog1.php in b2evolution 4.1.3 allows remote attackers to inject arbit... |
| CVE-2012-5910 | — | — | 1.1% | Nov 17, 2012 | SQL injection vulnerability in blogs/htsrv/viewfile.php in b2evolution 4.1.3 allows remote authenticated users to execut... |
| CVE-2012-5909 | — | — | 1.1% | Nov 17, 2012 | SQL injection vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers ... |
| CVE-2012-5908 | — | — | 1.6% | Nov 17, 2012 | Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remo... |
| CVE-2012-5907 | — | — | 7.7% | Nov 17, 2012 | Directory traversal vulnerability in json.php in TomatoCart 1.2.0 Alpha 2 and possibly earlier allows remote attackers t... |
| CVE-2012-5906 | — | — | 1.3% | Nov 17, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in GreenBrowser 6.1.0117 and 6.1.0216 allow remote attackers to inje... |
| CVE-2012-5905 | — | — | 2.9% | Nov 17, 2012 | Buffer overflow in KnFTPd 1.0.0 allows remote authenticated users to cause a denial of service (crash) via a long string... |
| CVE-2012-5904 | — | — | 5.7% | Nov 17, 2012 | Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE ... |
| CVE-2012-5903 | — | — | 1.6% | Nov 17, 2012 | Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 2.0.2 allows remote attackers to inject arbitrar... |
| CVE-2012-5902 | — | — | 1.2% | Nov 17, 2012 | Cross-site scripting (XSS) vulnerability in ptk/lib/modal_bookmark.php in DFLabs PTK 1.0.5 allows remote attackers to in... |
| CVE-2012-5901 | — | — | 1.4% | Nov 17, 2012 | DFLabs PTK 1.0.5 stores data files with predictable names under the web document root with insufficient access control, ... |
| CVE-2012-5900 | — | — | 1.3% | Nov 17, 2012 | Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL command... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now