RaqibCTI
CVE

CVE-2012-1856

P2
Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability
Microsoft · Office
Date added (CISA)
2022-03-03
Remediation due
2022-03-24
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

Description

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption.

Source: NVD ↗ · CISA KEV Catalog ↗