CVE-2012-0158 is a critical remote code execution vulnerability residing in the MSCOMCTL.OCX ActiveX controls used by Microsoft Office, SQL Server, and other legacy software. This high-severity flaw allows unauthenticated attackers to execute arbitrary code by socially engineering users into opening malicious websites or crafted documents, such as RTF files, leading to potential full system compromise. Despite its age, the vulnerability remains a significant risk with a high EPSS score; it is listed in CISA's Known Exploited Vulnerabilities catalog and has been extensively leveraged by APT groups using widely available exploit code found in frameworks like Metasploit.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2003CPE matchmatch criteria | cpe:2.3:a:microsoft:office:2003:sp3:*:*:*:*:*:* | ||
2007CPE matchmatch criteria | cpe:2.3:a:microsoft:office:2007:sp2:*:*:*:*:*:* | ||
2007CPE matchmatch criteria | cpe:2.3:a:microsoft:office:2007:sp3:*:*:*:*:*:* | ||
2010CPE matchmatch criteria | cpe:2.3:a:microsoft:office:2010:-:*:*:*:*:x86:* | ||
2010CPE matchmatch criteria | cpe:2.3:a:microsoft:office:2010:sp1:*:*:*:*:x86:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.
Remediation records are not available for this CVE.