Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2012-0151

Microsoft | WindowsAdded 2022-06-08Remediation Deadline 2022-06-22

Microsoft Windows Authenticode Signature Verification Remote Code Execution Vulnerability

The Authenticode Signature Verification function in Microsoft Windows (WinVerifyTrust) does not properly validate the digest of a signed portable executable (PE) file, which allows user-assisted remote attackers to execute code.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-20

References