2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-10062 | HIGH | 8.7 | 1.2% | Aug 30, 2025 | A vulnerability in XAMPP, developed by Apache Friends, version 1.7.3's default WebDAV configuration allows remote authen... |
| CVE-2012-10061 | HIGH | 8.7 | 1.2% | Aug 20, 2025 | Sockso Music Host Server versions <= 1.5 are vulnerable to a path traversal flaw that allows unauthenticated remote atta... |
| CVE-2012-10057 | HIGH | 8.4 | 0.4% | Aug 13, 2025 | Lattice Semiconductor ispVM System v18.0.2 contains a buffer overflow vulnerability in its handling of .xcf project file... |
| CVE-2012-10056 | HIGH | 8.7 | 0.9% | Aug 13, 2025 | PHP Volunteer Management System v1.0.2 contains an arbitrary file upload vulnerability in its document upload functional... |
| CVE-2012-10051 | HIGH | 8.4 | 0.3% | Aug 8, 2025 | Photodex ProShow Producer version 5.0.3256 contains a stack-based buffer overflow vulnerability in the handling of plugi... |
| CVE-2012-10048 | HIGH | 8.7 | 2.7% | Aug 8, 2025 | Zenoss Core 3.x contains a command injection vulnerability in the showDaemonXMLConfig endpoint. The daemon parameter is ... |
| CVE-2012-10042 | HIGH | 8.7 | 0.9% | Aug 8, 2025 | Sflog! CMS 1.0 contains an authenticated arbitrary file upload vulnerability in the blog management interface. The appli... |
| CVE-2012-10034 | HIGH | 7.5 | 1.3% | Aug 5, 2025 | ClanSphere 2011.3 is vulnerable to a local file inclusion (LFI) flaw due to improper handling of the cs_lang cookie para... |
| CVE-2012-10032 | HIGH | 8.7 | 0.8% | Aug 5, 2025 | Maxthon3 version 3.2.2 build 1000 and prior are vulnerable to cross context scripting (XCS) via the about:history page. ... |
| CVE-2012-10031 | HIGH | 8.6 | 0.8% | Aug 5, 2025 | BlazeVideo HDTV Player Pro v6.6.0.3 is vulnerable to a stack-based buffer overflow due to improper handling of user-supp... |
| CVE-2012-10029 | HIGH | 8.6 | 2.6% | Aug 5, 2025 | Nagios XI Network Monitor prior to Graph Explorer component version 1.3 contains a command injection vulnerability in `v... |
| CVE-2012-10028 | HIGH | 8.6 | 0.9% | Aug 5, 2025 | Netwin SurgeFTP version 23c8 and prior contains a vulnerability in its web-based administrative console that allows auth... |
| CVE-2012-10024 | HIGH | 7.1 | 1.1% | Aug 5, 2025 | XBMC version 11.0 contains a path traversal vulnerability in its embedded HTTP server. When accessed via HTTP Basic Auth... |
| CVE-2012-10022 | HIGH | 8.5 | 0.4% | Aug 1, 2025 | Kloxo versions 6.1.12 and earlier contain two setuid root binaries—lxsuexec and lxrestart—that allow local privilege esc... |
| CVE-2012-10018 | HIGH | 8.3 | 1.1% | Oct 16, 2024 | The Mapplic and Mapplic Lite plugins for WordPress are vulnerable to Server-Side Request Forgery in versions up to, and ... |
| CVE-2012-10017 | HIGH | 8.8 | 0.4% | Dec 26, 2023 | A vulnerability was found in BestWebSoft Portfolio Plugin up to 2.04 on WordPress. It has been classified as problematic... |
| CVE-2012-10016 | HIGH | 7.5 | 0.6% | Oct 17, 2023 | A vulnerability classified as problematic has been found in Halulu simple-download-button-shortcode Plugin 1.0 on WordPr... |
| CVE-2012-10015 | HIGH | 8.8 | 0.4% | May 31, 2023 | A vulnerability was found in BestWebSoft Twitter Plugin up to 2.14 on WordPress. It has been classified as problematic. ... |
| CVE-2012-10012 | HIGH | 8.8 | 0.3% | Apr 10, 2023 | A vulnerability has been found in BestWebSoft Facebook Like Button up to 2.13 and classified as problematic. Affected by... |
| CVE-2012-10010 | HIGH | 8.8 | 0.4% | Apr 9, 2023 | A vulnerability was found in BestWebSoft Contact Form 3.21. It has been classified as problematic. This affects the func... |
| CVE-2012-2201 | HIGH | 7.5 | 1.7% | Sep 29, 2022 | IBM WebSphere MQ 7.1 is vulnerable to a denial of service, caused by an error when handling user ids. A remote attacker ... |
| CVE-2012-1102 | HIGH | 7.5 | 1.4% | Jul 9, 2021 | It was discovered that the XML::Atom Perl module before version 0.39 did not disable external entities when parsing XML ... |
| CVE-2012-0955 | HIGH | 7.4 | 0.6% | Dec 2, 2020 | software-properties was vulnerable to a person-in-the-middle attack due to incorrect TLS certificate validation in softw... |
| CVE-2012-3336 | HIGH | 8.8 | 1.0% | Sep 1, 2020 | IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to SQL injection. A remote authenticated attacker could send sp... |
| CVE-2012-1094 | HIGH | 7.5 | 1.1% | Mar 10, 2020 | JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-c... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now