PoC Index

CVE-2012-0163

HIGH 9.3EPSS 38.3%

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameters, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework Parameter Validation Vulnerability."

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
38.25% chance of exploitation in the next 30 days, 98th percentile
Published
2012-04-10
Updated
2024-08-06

ExploitDB entries (1)

References

Related