Vulnerability Intelligence

🛡 CVE-2012-0158

Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability
Microsoft MSCOMCTL.OCX CWE-94

Ransomware use

CISA KEV

EPSS

100.0%
Likely exploited · 100th pct

Added to KEV

2021-11-03
CISA

Remediate by

2022-05-03
⚠ OVERDUE

CWE

CWE-94
weakness

📈 EPSS exploit probability

100.0%
FIRST EPSS — 30-day probability of exploitation in the wild · band Likely exploited · higher than 100% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2022-05-03. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

Microsoft MSCOMCTL.OCX contains an unspecified vulnerability that allows for remote code execution, allowing an attacker to take complete control of an affected system under the context of the current user.

🛡 Add to case

Attach CVE-2012-0158 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php