| | CVE-2012-5458 | VMware | high | 8.3 | 0.1%
| | VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissio… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-3569 | VMware | critical | 9.3 | 80.6%
| | Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x bef… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-4777 | Microsoft | critical | 9.3 | 10.2%
| | The code-optimization feature in the reflection implementation in Microsoft .NET Framework 4 and 4.5… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-4776 | Microsoft | critical | 9.3 | 45.0%
| | The Web Proxy Auto-Discovery (WPAD) functionality in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-4775 | Microsoft | high | 8.8 | 14.8%
| | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arb… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-2543 | Microsoft | critical | 9.3 | 65.9%
| | Stack-based buffer overflow in Microsoft Excel 2007 SP2 and SP3 and 2010 SP1; Office 2011 for Mac; E… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-2532 | Microsoft | medium | 5.0 | 19.6%
| | Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) processes unspecified comm… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-2519 | Microsoft | high | 7.9 | 0.7%
| | Untrusted search path vulnerability in Entity Framework in ADO.NET in Microsoft .NET Framework 1.0 S… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1896 | Microsoft | medium | 5.0 | 48.7%
| | Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not properly consider trust levels during constructi… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1895 | Microsoft | critical | 9.3 | 9.3%
| | The reflection implementation in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5.1, and 4 do… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1887 | Microsoft | critical | 9.3 | 58.3%
| | Use-after-free vulnerability in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1, and Office… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1886 | Microsoft | critical | 9.3 | 62.1%
| | Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Excel Viewer; and Office Compatibility Pac… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1885 | Microsoft | critical | 9.3 | 65.9%
| | Heap-based buffer overflow in Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Office 2008 … | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1539 | Microsoft | high | 8.1 | 19.0%
| | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arb… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-1538 | Microsoft | critical | 9.3 | 14.2%
| | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arb… | Nov 14, 2012 | Apr 29, 2026 |
| | CVE-2012-5424 | Cisco | medium | 5.0 | 0.4%
| | Cisco Secure Access Control System (ACS) 5.x before 5.2 Patch 11 and 5.3 before 5.3 Patch 7, when a … | Nov 7, 2012 | Apr 29, 2026 |
| | CVE-2012-3270 | HPE | critical | 10.0 | 3.3%
| | Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allow… | Nov 7, 2012 | Apr 29, 2026 |
| | CVE-2012-3269 | HPE | high | 7.5 | 1.7%
| | Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allow… | Nov 7, 2012 | Apr 29, 2026 |
| | CVE-2012-5786 | Apache | medium | 5.8 | 0.1%
| | The wsdl_first_https sample code in distribution/src/main/release/samples/wsdl_first_https/src/main/… | Nov 4, 2012 | Apr 29, 2026 |
| | CVE-2012-5785 | Apache | medium | 5.8 | 0.5%
| | Apache Axis2/Java 1.6.2 and earlier does not verify that the server hostname matches a domain name i… | Nov 4, 2012 | Apr 29, 2026 |
| | CVE-2012-5784 | Apache | medium | 5.8 | 1.6%
| | Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional I… | Nov 4, 2012 | Apr 29, 2026 |
| | CVE-2012-5783 | Apache | medium | 5.8 | 0.6%
| | Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK a… | Nov 4, 2012 | Apr 29, 2026 |
| | CVE-2012-3446 | Apache | medium | 5.9 | 0.3%
| | Apache Libcloud before 0.11.1 uses an incorrect regular expression during verification of whether th… | Nov 4, 2012 | Apr 29, 2026 |
| | CVE-2012-5417 | Cisco | critical | 10.0 | 2.5%
| | Cisco Prime Data Center Network Manager (DCNM) before 6.1(1) does not properly restrict access to ce… | Nov 2, 2012 | Apr 29, 2026 |
| | CVE-2012-5416 | Cisco | high | 7.8 | 0.6%
| | Buffer overflow in Cisco Unified MeetingPlace Web Conferencing before 7.1MR1 Patch 1, 8.0 before 8.0… | Nov 2, 2012 | Apr 29, 2026 |
| | CVE-2012-4501 | Apache | critical | 10.0 | 2.7%
| | Citrix Cloud.com CloudStack, and Apache CloudStack pre-release, allows remote attackers to make arbi… | Oct 26, 2012 | Apr 29, 2026 |
| | CVE-2012-3941 | Cisco | critical | 9.3 | 7.7%
| | Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 … | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3940 | Cisco | critical | 9.3 | 8.2%
| | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 bef… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3939 | Cisco | critical | 9.3 | 4.7%
| | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 bef… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3938 | Cisco | critical | 9.3 | 8.2%
| | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 bef… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3937 | Cisco | critical | 9.3 | 8.2%
| | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 bef… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3936 | Cisco | critical | 9.3 | 8.2%
| | Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 bef… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-5672 | Microsoft | medium | 4.3 | 16.0%
| | Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow rem… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-3506 | Apache | critical | 10.0 | 0.8%
| | Unspecified vulnerability in the Apache Open For Business Project (aka OFBiz) 10.04.x before 10.04.0… | Oct 25, 2012 | Apr 29, 2026 |
| | CVE-2012-2284 | Microsoft | low | 2.1 | 0.1%
| | The (1) install and (2) upgrade processes in EMC NetWorker Module for Microsoft Applications (NMM) 2… | Oct 18, 2012 | Apr 29, 2026 |
| | CVE-2012-3163 | F5 | critical | 9.0 | 1.0%
| | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.… | Oct 17, 2012 | Apr 29, 2026 |
| | CVE-2012-5351 | Apache | medium | 6.4 | 0.3%
| | Apache Axis2 allows remote attackers to forge messages and bypass authentication via a SAML assertio… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-4418 | Apache | medium | 5.8 | 0.3%
| | Apache Axis2 allows remote attackers to forge messages and bypass authentication via an "XML Signatu… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-2552 | Microsoft | medium | 4.3 | 44.4%
| | Cross-site scripting (XSS) vulnerability in the SQL Server Report Manager in Microsoft SQL Server 20… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-2550 | Microsoft | critical | 9.3 | 66.7%
| | Microsoft Works 9 allows remote attackers to execute arbitrary code or cause a denial of service (he… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-2528 | Microsoft | critical | 9.3 | 56.9%
| | Use-after-free vulnerability in Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-2520 | Microsoft | medium | 4.3 | 24.2%
| | Cross-site scripting (XSS) vulnerability in Microsoft InfoPath 2007 SP2 and SP3 and 2010 SP1, Commun… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-0182 | Microsoft | critical | 9.3 | 50.3%
| | Microsoft Word 2007 SP2 and SP3 does not properly handle memory during the parsing of Word documents… | Oct 9, 2012 | Apr 29, 2026 |
| | CVE-2012-5051 | VMware | medium | 5.0 | 0.1%
| | Directory traversal vulnerability in VMware CapacityIQ 1.5.x allows remote attackers to read arbitra… | Oct 5, 2012 | Apr 29, 2026 |
| | CVE-2012-5050 | VMware | medium | 4.3 | 0.3%
| | Cross-site scripting (XSS) vulnerability in the server in VMware vCenter Operations (aka vCOps) befo… | Oct 5, 2012 | Apr 29, 2026 |
| | CVE-2012-4897 | VMware | medium | 6.9 | 0.2%
| | Untrusted search path vulnerability in the installer in VMware Movie Decoder before 9.0 allows local… | Oct 5, 2012 | Apr 29, 2026 |
| | CVE-2012-3267 | HPE | medium | 5.0 | 1.5%
| | Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.20 allows remote attackers to obtain… | Oct 4, 2012 | Apr 29, 2026 |
| | CVE-2012-3266 | HPE | medium | 5.0 | 0.7%
| | Unspecified vulnerability in IBRIX 6.1.196 through 6.1.251 on HP IBRIX X9000 Storage allows remote a… | Oct 2, 2012 | Apr 29, 2026 |
| | CVE-2012-2145 | Apache | medium | 5.0 | 7.1%
| | Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows re… | Sep 28, 2012 | Apr 29, 2026 |
| | CVE-2012-3949 | Cisco | high | 7.8 | 0.9%
| | The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5,… | Sep 27, 2012 | Apr 29, 2026 |