VULNERABILITY INTELLIGENCE
CVE-2012-1889
CVSS score9.3 HIGH
EPSS probability83.52%
CISA KEVKnown exploited vulnerability
Published2012-06-13
Last modified2026-06-16
Known Exploited Vulnerability
Microsoft XML Core Services Memory Corruption Vulnerability
Vendor / product: Microsoft / XML Core Services
Description
Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.