CVE-2012-1889
Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
- Affected products
- Xml Core Services, Office, Sharepoint Server
- Microsoft Xml Core Services
- = 3.0, 4.0, 6.0
- CVSS 2.0
- 9.3 HIGH
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 83.6% (100th percentile)
- Weakness
- CWE-787
- NVD status
- Analyzed
- Published
- 2012-06-13
CVE-2012-1889 at NVD
15 known exploits for CVE-2012-1889
Proof-of-concept code and exploit modules indexed by Sploitus
CVE-2012-1889
cve-2012-1889
PwnStar - Script for multi attack (for all your fake-AP needs!)
MSXML未初始化内存破坏漏洞 (MS12-043)
Microsoft XML Core Services memory corruption
Microsoft XML Core Services memory corruption
Microsoft XML Core Services memory corruption
Microsoft XML Core Services memory corruption
Microsoft XML Core Services MSXML Uninitialized Memory Corruption
Microsoft XML Core Services MSXML Uninitialized Memory Corruption
Microsoft XML Core Services - MSXML Uninitialized Memory Corruption (MS12-043) (Metasploit)
Microsoft XML Core Services MSXML Uninitialized Memory Corruption
Immunity Canvas: MS12_043
Microsoft XML Core Services远程代码执行漏洞
MS12-043 Microsoft XML Core Services MSXML Uninitialized Memory Corruption