CVE-2012-4792CISA KEVEPSS p99.5%

CVE-2012-4792Microsoft Internet Explorer Use-After-Free Vulnerability

Microsoft / Internet Explorer

Description

Microsoft Internet Explorer contains a use-after-free vulnerability that allows a remote attacker to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object.

Scoring

EPSS78.82% probability of exploitation · percentile 99.5% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2024-07-23

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft Internet Explorer Use-After-Free Vulnerabilitykev-cve-2012-47920%live

Related by meaning· 4

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft Internet Explorer Remote Code Execution Vulnerability
CVE
Microsoft Internet Explorer Memory Corruption Vulnerability
CVE
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
CVE
Microsoft Internet Explorer Resource Management Errors Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.