Memory Corruption Vulnerability in Microsoft Visio Viewer 2010
CVE-2012-0137

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
14 February 2012

Summary

The vulnerability in Microsoft Visio Viewer 2010 arises from improper memory handling during the parsing of crafted Visio files. Attackers can exploit this flaw by injecting specially crafted attributes into a VSD file, resulting in the execution of arbitrary code on the affected system. This poses a significant risk as successful exploitation allows unauthorized access and potential manipulation of sensitive data. It is crucial for users to implement available patches and updates to mitigate the risks associated with this vulnerability.

References

EPSS Score

41% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.