2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1308 | — | — | 2.4% | Oct 8, 2012 | Cross-site request forgery (CSRF) vulnerability in redpass.cgi in D-Link DSL-2640B Firmware EU_4.00 allows remote attack... |
| CVE-2012-1189 | — | — | 9.6% | Oct 8, 2012 | Stack-based buffer overflow in modules/graphic/ssgraph/grsound.cpp in The Open Racing Car Simulator (TORCS) before 1.3.3... |
| CVE-2012-5318 | — | — | 6.5% | Oct 8, 2012 | Unrestricted file upload vulnerability in uploadify/scripts/uploadify.php in the Kish Guest Posting plugin 1.2 for WordP... |
| CVE-2012-5317 | — | — | 1.3% | Oct 8, 2012 | SQL injection vulnerability in main_bigware_43.php in Bigware Shop before 2.1.5 allows remote attackers to execute arbit... |
| CVE-2012-5316 | — | — | 1.0% | Oct 8, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Spam & Virus Firewall 600 Firmware 4.0.1.009 and earlie... |
| CVE-2012-5315 | — | — | 1.6% | Oct 8, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in php ireport 1.0 allow remote attackers to inject arbitrary web sc... |
| CVE-2012-5314 | — | — | 1.2% | Oct 8, 2012 | Cross-site scripting (XSS) vulnerability in ViewGit 0.0.6 and earlier allows remote attackers to inject arbitrary web sc... |
| CVE-2012-5313 | — | — | 1.1% | Oct 8, 2012 | SQL injection vulnerability in forum.asp in Snitz Forums 2000 allows remote attackers to execute arbitrary SQL commands ... |
| CVE-2012-5312 | — | — | 1.1% | Oct 8, 2012 | SQL injection vulnerability in Tribiq CMS allows remote attackers to execute arbitrary SQL commands via the id parameter... |
| CVE-2012-5311 | — | — | — | Oct 8, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-0227. Reason: This candidate is a duplicate of... |
| CVE-2012-5310 | — | — | 2.1% | Oct 8, 2012 | SQL injection vulnerability in the WP e-Commerce plugin before 3.8.7.6 for WordPress allows remote attackers to execute ... |
| CVE-2012-1125 | — | — | 11.6% | Oct 8, 2012 | Unrestricted file upload vulnerability in uploadify/scripts/uploadify.php in the Kish Guest Posting plugin before 1.2 fo... |
| CVE-2012-5309 | — | — | 1.3% | Oct 8, 2012 | servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 does not properly restrict invalid authentica... |
| CVE-2012-5308 | — | — | 0.6% | Oct 8, 2012 | Cross-site request forgery (CSRF) vulnerability in servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim ... |
| CVE-2012-5307 | — | — | 0.9% | Oct 8, 2012 | Cross-site scripting (XSS) vulnerability in servlet/traveler in IBM Lotus Notes Traveler before 8.5.3.3 Interim Fix 1, w... |
| CVE-2012-4825 | — | — | 1.0% | Oct 8, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in servlet/traveler/ILNT.mobileconfig in IBM Lotus Notes Traveler be... |
| CVE-2012-4824 | — | — | 1.1% | Oct 8, 2012 | Open redirect vulnerability in servlet/traveler in IBM Lotus Notes Traveler 8.5.3 before 8.5.3.3 Interim Fix 1 allows re... |
| CVE-2012-1414 | — | — | 1.0% | Oct 7, 2012 | Cross-site request forgery (CSRF) vulnerability in manager/news.php in Plume CMS 1.2.4 and earlier allows remote attacke... |
| CVE-2012-5306 | — | — | 12.1% | Oct 6, 2012 | Stack-based buffer overflow in the SelectDirectory method in DcsCliCtrl.dll in Camera Stream Client ActiveX Control, as ... |
| CVE-2012-5305 | — | — | 1.2% | Oct 6, 2012 | Cross-site scripting (XSS) vulnerability in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allows remote attackers to inj... |
| CVE-2012-5304 | — | — | 1.4% | Oct 6, 2012 | Static code injection vulnerability in administration/install.php in YVS Image Gallery allows remote attackers to inject... |
| CVE-2012-1618 | — | — | 2.9% | Oct 6, 2012 | Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_confor... |
| CVE-2012-1634 | — | — | 1.4% | Oct 6, 2012 | Cross-site scripting (XSS) vulnerability in video_filter.codecs.inc in the Video Filter module 6.x-2.x and 7.x-2.x for D... |
| CVE-2012-1624 | — | — | 1.1% | Oct 6, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in the Lingotek module 6.x-1.x before 6.x-1.40 for Drupal allow remo... |
| CVE-2012-1623 | — | — | 1.4% | Oct 6, 2012 | The Registration Codes module before 6.x-2.4 for Drupal does not restrict access to the registration code list, which mi... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now