AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-2531

LOW · CVSS 2.1 EPSS 0.94%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-11-14 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 2.1. It affects Microsoft.

CVE
CVE-2012-2531
Severity
LOW
CVSS
2.1
EPSS
0.94%
Microsoft

Original NVD Description

Microsoft Internet Information Services (IIS) 7.5 uses weak permissions for the Operational log, which allows local users to discover credentials by reading this file, aka "Password Disclosure Vulnerability."