AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-0007

MEDIUM · CVSS 4.3 EPSS 19.28%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-01-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-0007
Severity
MEDIUM
CVSS
4.3
EPSS
19.28%
Microsoft

Original NVD Description

The Microsoft Anti-Cross Site Scripting (AntiXSS) Library 3.x and 4.0 does not properly evaluate characters after the detection of a Cascading Style Sheets (CSS) escaped character, which allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML input, aka "AntiXSS Library Bypass Vulnerability."