2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-4003 | — | — | 1.8% | Oct 9, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in GLPI-PROJECT GLPI before 0.83.3 allow remote attackers to inject ... |
| CVE-2012-4002 | — | — | 1.0% | Oct 9, 2012 | Cross-site request forgery (CSRF) vulnerability in GLPI-PROJECT GLPI before 0.83.3 allows remote attackers to hijack the... |
| CVE-2012-3549 | — | — | 7.8% | Oct 9, 2012 | The SCTP implementation in FreeBSD 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference an... |
| CVE-2012-3505 | — | — | 7.3% | Oct 9, 2012 | Tinyproxy 1.8.3 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via (1) a ... |
| CVE-2012-2552 | — | — | 16.3% | Oct 9, 2012 | Cross-site scripting (XSS) vulnerability in the SQL Server Report Manager in Microsoft SQL Server 2000 Reporting Service... |
| CVE-2012-2551 | — | — | 27.5% | Oct 9, 2012 | The server in Kerberos in Microsoft Windows Server 2008 R2 and R2 SP1, and Windows 7 Gold and SP1, allows remote attacke... |
| CVE-2012-2550 | — | — | 22.2% | Oct 9, 2012 | Microsoft Works 9 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption... |
| CVE-2012-2529 | — | — | 1.8% | Oct 9, 2012 | Integer overflow in the kernel in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows ... |
| CVE-2012-2528 | — | — | 22.1% | Oct 9, 2012 | Use-after-free vulnerability in Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibili... |
| CVE-2012-2520 | — | — | 28.5% | Oct 9, 2012 | Cross-site scripting (XSS) vulnerability in Microsoft InfoPath 2007 SP2 and SP3 and 2010 SP1, Communicator 2007 R2, Lync... |
| CVE-2012-0182 | — | — | 68.3% | Oct 9, 2012 | Microsoft Word 2007 SP2 and SP3 does not properly handle memory during the parsing of Word documents, which allows remot... |
| CVE-2012-3436 | — | — | 3.4% | Oct 9, 2012 | OpenTTD 0.6.0 through 1.2.1 does not properly validate requests to clear a water tile, which allows remote attackers to ... |
| CVE-2012-5350 | — | — | 2.4% | Oct 9, 2012 | SQL injection vulnerability in the Pay With Tweet plugin before 1.2 for WordPress allows remote authenticated users with... |
| CVE-2012-5349 | — | — | 3.0% | Oct 9, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in pay.php in the Pay With Tweet plugin before 1.2 allow remote atta... |
| CVE-2012-5348 | — | — | 1.1% | Oct 9, 2012 | SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote attackers to execute arbitrary SQL commands via th... |
| CVE-2012-5347 | — | — | 4.4% | Oct 9, 2012 | TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter... |
| CVE-2012-5346 | — | — | 3.7% | Oct 9, 2012 | Cross-site scripting (XSS) vulnerability in wp-live.php in the WP Live.php module 1.2.1 for WordPress allows remote atta... |
| CVE-2012-5345 | — | — | 2.5% | Oct 9, 2012 | Buffer overflow in the Remote command server (Rcmd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attacker... |
| CVE-2012-5344 | — | — | 7.2% | Oct 9, 2012 | Directory traversal vulnerability in the WebServer (Thttpd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote ... |
| CVE-2012-5343 | — | — | 1.9% | Oct 9, 2012 | Cross-site scripting (XSS) vulnerability in admin/login.php in Limny 3.0.1 allows remote attackers to inject arbitrary w... |
| CVE-2012-5342 | — | — | 1.1% | Oct 9, 2012 | Multiple SQL injection vulnerabilities in SenseSites CommonSense CMS allow remote attackers to execute arbitrary SQL com... |
| CVE-2012-5341 | — | — | 1.6% | Oct 9, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in statistik.php in Otterware StatIt 4 allow remote attackers to inj... |
| CVE-2012-4457 | — | — | 2.3% | Oct 9, 2012 | OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-3 does not properly handle authorization tokens for di... |
| CVE-2012-4456 | — | — | 4.0% | Oct 9, 2012 | The (1) OS-KSADM/services and (2) tenant APIs in OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-2 do ... |
| CVE-2012-5272 | — | — | 5.2% | Oct 9, 2012 | Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now