VULNERABILITY INTELLIGENCE

CVE-2012-1889

CVSS score9.3 HIGH
EPSS probability83.52%
CISA KEVKnown exploited vulnerability
Published2012-06-13
Last modified2026-06-16

Known Exploited Vulnerability

Microsoft XML Core Services Memory Corruption Vulnerability

Vendor / product: Microsoft / XML Core Services

Description

Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.