Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2012-1856

Microsoft | OfficeAdded 2022-03-03Remediation Deadline 2022-03-24

Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-94

References