CVE Database
/

CVE-2012-0014

Back to search

CVE-2012-0014

Published: Feb 14, 2012

Modified: Jan 21, 2025

PUBLISHED

Description

Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated with unmanaged objects, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, (3) a crafted .NET Framework application, or (4) a crafted Silverlight application, aka ".NET Framework Unmanaged Objects Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

TA12-045A
third-party-advisory
x_refsource_CERT
MS12-016
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:13972
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now