LiveActive security incident?Get immediate response
CVE archive

December 2012

Browse CVE records published in December 2012, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 9 of 309 matching CVEs · Page 7 of 7.

Unknown · CVSS Not scored

CVE-2012-0263: monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain...

monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain sensitive information such as database and user credentials via error messages that are triggered by (1) a malformed hoststatustypes parameter to status/service/all or (2) a crafted request to config.

Published Dec 31, 2013 · Updated Aug 6, 2024

Unknown · CVSS Not scored

CVE-2012-0218: Xen 3.4, 4.0, and 4.1, when the guest OS has not registered a handler for a syscall or sysenter instruction...

Xen 3.4, 4.0, and 4.1, when the guest OS has not registered a handler for a syscall or sysenter instruction, does not properly clear a flag for exception injection when injecting a General Protection Fault, which allows local PV guest OS users to cause a denial of service (guest crash) by later triggering an exception that would normally be handled within Xen.

Published Dec 3, 2012 · Updated Aug 6, 2024