2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4198 | — | — | 0.9% | Nov 16, 2012 | The User.get method in Bugzilla/WebService/User.pm in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.... |
| CVE-2012-4197 | — | — | 1.5% | Nov 16, 2012 | Bugzilla/Attachment.pm in attachment.cgi in Bugzilla 2.x and 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and ... |
| CVE-2012-4189 | — | — | 1.0% | Nov 16, 2012 | Cross-site scripting (XSS) vulnerability in Bugzilla 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1, al... |
| CVE-2012-5777 | — | — | 2.2% | Nov 16, 2012 | Eval injection vulnerability in the ReplaceListVars function in the template parser in e/class/connect.php in EmpireCMS ... |
| CVE-2012-5523 | — | — | 1.9% | Nov 16, 2012 | core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restrict... |
| CVE-2012-5522 | — | — | 1.3% | Nov 16, 2012 | MantisBT before 1.2.12 does not use an expected default value during decisions about whether a user may modify the statu... |
| CVE-2012-4613 | — | — | 0.3% | Nov 16, 2012 | EMC RSA Data Protection Manager Appliance 2.7.x and 3.x before 3.2.1 does not properly restrict the number of authentica... |
| CVE-2012-4612 | — | — | 0.9% | Nov 16, 2012 | Cross-site scripting (XSS) vulnerability in EMC RSA Data Protection Manager Appliance and Software Server 2.7.x and 3.x ... |
| CVE-2012-5851 | — | — | 2.3% | Nov 15, 2012 | html/parser/XSSAuditor.cpp in WebCore in WebKit, as used in Google Chrome through 22 and Safari 5.1.7, does not consider... |
| CVE-2012-4955 | — | — | 2.5% | Nov 15, 2012 | Cross-site scripting (XSS) vulnerability in Dell OpenManage Server Administrator (OMSA) before 6.5.0.1, 7.0 before 7.0.0... |
| CVE-2012-4954 | — | — | 1.1% | Nov 15, 2012 | The edit-profile page in Vanilla Forums before 2.1a32 allows remote authenticated users to modify arbitrary profile sett... |
| CVE-2012-4951 | — | — | 1.5% | Nov 15, 2012 | Multiple SQL injection vulnerabilities in terminal/paramedit.aspx in VeriFone VeriCentre Web Console before 2.2 build 36... |
| CVE-2012-5860 | — | — | 0.3% | Nov 14, 2012 | Unspecified vulnerability on Oberthur ID-One COSMO 5.2, 5.2a, and 64 smart cards makes it easier for attackers to defeat... |
| CVE-2012-5459 | — | — | 0.6% | Nov 14, 2012 | Untrusted search path vulnerability in VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows... |
| CVE-2012-5458 | — | — | 0.7% | Nov 14, 2012 | VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified p... |
| CVE-2012-4953 | — | — | 6.0% | Nov 14, 2012 | The decomposer engine in Symantec Endpoint Protection (SEP) 11.0, Symantec Endpoint Protection Small Business Edition 12... |
| CVE-2012-4949 | — | — | 4.4% | Nov 14, 2012 | SQL injection vulnerability in ESRI ArcGIS 10.1 allows remote authenticated users to execute arbitrary SQL commands via ... |
| CVE-2012-4948 | — | — | 0.3% | Nov 14, 2012 | The default configuration of Fortinet Fortigate UTM appliances uses the same Certification Authority certificate and sam... |
| CVE-2012-4853 | — | — | 1.0% | Nov 14, 2012 | Cross-site request forgery (CSRF) vulnerability in IBM WebSphere Application Server 6.1 before 6.1.0.45, 7.0 before 7.0.... |
| CVE-2012-4851 | — | — | 1.8% | Nov 14, 2012 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server 8.5 Liberty Profile before 8.5.0.1 allows r... |
| CVE-2012-4850 | — | — | 2.4% | Nov 14, 2012 | IBM WebSphere Application Server 8.5 Liberty Profile before 8.5.0.1, when JAX-RS is used, does not properly validate req... |
| CVE-2012-4847 | — | — | 1.0% | Nov 14, 2012 | IBM Cognos Business Intelligence (BI) 8.4 and 8.4.1 allows remote authenticated users to cause a denial of service (CPU ... |
| CVE-2012-3569 | — | — | 47.7% | Nov 14, 2012 | Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Pl... |
| CVE-2012-3330 | — | — | 2.4% | Nov 14, 2012 | The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, an... |
| CVE-2012-2619 | — | — | 12.9% | Nov 14, 2012 | The Broadcom BCM4325 and BCM4329 Wi-Fi chips, as used in certain Acer, Apple, Asus, Ford, HTC, Kyocera, LG, Malata, Moto... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now