2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1810 | — | — | 1.9% | Nov 13, 2012 | EOSCoreScada.exe in C3-ilex EOScada before 11.0.19.2 allows remote attackers to cause a denial of service (daemon restar... |
| CVE-2012-5827 | — | — | 1.3% | Nov 11, 2012 | Joomla! 2.5.x before 2.5.8 and 3.0.x before 3.0.2 allows remote attackers to conduct clickjacking attacks via unspecifie... |
| CVE-2012-5482 | — | — | 2.7% | Nov 11, 2012 | The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete ... |
| CVE-2012-4884 | — | — | 1.6% | Nov 11, 2012 | Argument injection vulnerability in Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attack... |
| CVE-2012-4734 | — | — | 1.8% | Nov 11, 2012 | Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attackers to conduct a "confused deputy" a... |
| CVE-2012-4732 | — | — | 0.9% | Nov 11, 2012 | Cross-site request forgery (CSRF) vulnerability in Request Tracker (RT) 3.8.12 and other versions before 3.8.15, and 4.0... |
| CVE-2012-4731 | — | — | 1.7% | Nov 11, 2012 | FAQ manager for Request Tracker (RTFM) before 2.4.5 does not properly check user rights, which allows remote authenticat... |
| CVE-2012-4730 | — | — | 1.3% | Nov 11, 2012 | Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote authenticated users with ModifySelf or Adm... |
| CVE-2012-4573 | — | — | 3.3% | Nov 11, 2012 | The v1 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete ... |
| CVE-2012-4564 | — | — | 13.5% | Nov 11, 2012 | ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a deni... |
| CVE-2012-4554 | — | — | 15.8% | Nov 11, 2012 | The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE d... |
| CVE-2012-4553 | — | — | 2.1% | Nov 11, 2012 | Drupal 7.x before 7.16 allows remote attackers to obtain sensitive information and possibly re-install Drupal and execut... |
| CVE-2012-4548 | — | — | 2.8% | Nov 11, 2012 | Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users w... |
| CVE-2012-4540 | — | — | 3.4% | Nov 11, 2012 | Off-by-one error in the invoke function in IcedTeaScriptablePluginObject.cc in IcedTea-Web 1.1.x before 1.1.7, 1.2.x bef... |
| CVE-2012-4521 | — | — | — | Nov 11, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-4505. Reason: This candidate is a duplicate of C... |
| CVE-2012-4515 | — | — | 6.4% | Nov 11, 2012 | Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is ... |
| CVE-2012-4514 | — | — | 9.7% | Nov 11, 2012 | rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NUL... |
| CVE-2012-4513 | — | — | 12.6% | Nov 11, 2012 | khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) a... |
| CVE-2012-4505 | — | — | 3.2% | Nov 11, 2012 | Heap-based buffer overflow in the px_pac_reload function in lib/pac.c in libproxy 0.2.x and 0.3.x allows remote servers ... |
| CVE-2012-4504 | — | — | 3.5% | Nov 11, 2012 | Stack-based buffer overflow in the url::get_pac function in url.cpp in libproxy 0.4.x before 0.4.9 allows remote servers... |
| CVE-2012-3523 | — | — | 3.2% | Nov 11, 2012 | The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-t... |
| CVE-2012-2455 | — | — | 1.4% | Nov 10, 2012 | Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attack... |
| CVE-2012-3758 | — | — | 5.0% | Nov 9, 2012 | Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of s... |
| CVE-2012-3757 | — | — | 4.8% | Nov 9, 2012 | Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr... |
| CVE-2012-3756 | — | — | 5.6% | Nov 9, 2012 | Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of s... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now