2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-0691 | — | — | 0.3% | Oct 2, 2012 | CA License (aka CA Licensing) before 1.90.03 does not properly restrict system commands, which allows local users to gai... |
| CVE-2012-5234 | — | — | 1.0% | Oct 1, 2012 | Open redirect vulnerability in index.php in ocPortal before 7.1.6 allows remote attackers to redirect users to arbitrary... |
| CVE-2012-4242 | — | — | 8.9% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in the MF Gig Calendar plugin 0.9.2 for WordPress allows remote attackers to in... |
| CVE-2012-4065 | — | — | 1.0% | Oct 1, 2012 | Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remo... |
| CVE-2012-4064 | — | — | 1.2% | Oct 1, 2012 | Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remo... |
| CVE-2012-4063 | — | — | 1.9% | Oct 1, 2012 | The Apache Santuario configuration in Eucalyptus before 3.1.1 does not properly restrict applying XML Signature transfor... |
| CVE-2012-1604 | — | — | 2.0% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in NextBBS 0.6 allows remote attackers to inject arbitrary web script or HTML v... |
| CVE-2012-1603 | — | — | 1.4% | Oct 1, 2012 | Multiple SQL injection vulnerabilities in ajaxserver.php in NextBBS 0.6 allow remote attackers to execute arbitrary SQL ... |
| CVE-2012-1602 | — | — | 2.1% | Oct 1, 2012 | user.php in NextBBS 0.6 allows remote attackers to bypass authentication and gain administrator access by setting the us... |
| CVE-2012-1471 | — | — | 2.0% | Oct 1, 2012 | Directory traversal vulnerability in catalogue_file.php in ocPortal before 7.1.6 allows remote attackers to read arbitra... |
| CVE-2012-1470 | — | — | 1.7% | Oct 1, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in code_editor.php in ocPortal before 7.1.6 allow remote attackers t... |
| CVE-2012-5233 | — | — | 1.5% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in the stickynote module before 7.x-1.1 for Drupal allows remote authenticated ... |
| CVE-2012-1636 | — | — | 0.9% | Oct 1, 2012 | Cross-site request forgery (CSRF) vulnerability in the stickynote module before 7.x-1.1 for Drupal allows remote attacke... |
| CVE-2012-0989 | — | — | 1.6% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in OneOrZero AIMS 2.8.0 Trial Edition build231211 and possibly earlier allows r... |
| CVE-2012-5232 | — | — | 1.1% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in the Quickl Form component for Joomla! allows remote attackers to inject arbi... |
| CVE-2012-5231 | — | — | 2.7% | Oct 1, 2012 | miniCMS 1.0 and 2.0 allows remote attackers to execute arbitrary PHP code via a crafted (1) pagename or (2) area variabl... |
| CVE-2012-5230 | — | — | 1.3% | Oct 1, 2012 | Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla! has unknown impact and ... |
| CVE-2012-5229 | — | — | 3.7% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in css/gallery-css.php in the Slideshow Gallery2 plugin for WordPress allows re... |
| CVE-2012-5228 | — | — | 1.6% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in admin/index.php in phplist 2.10.9, 2.10.17, and possibly other versions befo... |
| CVE-2012-5227 | — | — | 1.1% | Oct 1, 2012 | SQL injection vulnerability in administrer/tva.php in Peel SHOPPING 2.8 and 2.9 allows remote attackers to execute arbit... |
| CVE-2012-5226 | — | — | 1.6% | Oct 1, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitr... |
| CVE-2012-5225 | — | — | 1.6% | Oct 1, 2012 | Cross-site scripting (XSS) vulnerability in webscr.php in xClick Cart 1.0.1 and 1.0.2 allows remote attackers to inject ... |
| CVE-2012-5224 | — | — | 2.6% | Oct 1, 2012 | PHP remote file inclusion vulnerability in vb/includes/vba_cmps_include_bottom.php in vBadvanced CMPS 3.2.2 and earlier ... |
| CVE-2012-5223 | — | — | 40.5% | Oct 1, 2012 | The proc_deutf function in includes/functions_vbseocp_abstract.php in vBSEO 3.5.0, 3.5.1, 3.5.2, 3.6.0, and earlier allo... |
| CVE-2012-1898 | — | — | 1.6% | Oct 1, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in wolfcms/admin/user/add in Wolf CMS 0.75 and earlier allow remote ... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now