CVE-2011-1889 KEV
9.8
CRITICAL · CVSS 3.1 · EPSS 49% (pctl 99)
Patch first
On CISA KEV — known exploited in the wild, due 2022-03-24.
Description
The NSPLookupServiceNext function in the client in Microsoft Forefront Threat Management Gateway (TMG) 2010 allows remote attackers to execute arbitrary code via vectors involving unspecified requests, aka "TMG Firewall Client Memory Corruption Vulnerability."
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 49.02% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | yes — remediate by 2022-03-24 |
| Public exploit | none known |
| Published | 2011-06-16 |
| Last modified | 2026-06-16 |
CISA KEV
| Name | Microsoft Forefront TMG Remote Code Execution Vulnerability |
|---|---|
| Added | 2022-03-03 |
| Due | 2022-03-24 |
| Vendor / product | Microsoft / Forefront Threat Management Gateway (TMG) |
| Ransomware use | none reported |
Affected (1)
| Vendor | Product |
|---|---|
| microsoft | forefront threat management gateway |
References
- http://secunia.com/advisories/44857
- http://www.securityfocus.com/bid/48181
- http://www.securitytracker.com/id?1025637
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-040
- https://exchange.xforce.ibmcloud.com/vulnerabilities/67736
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12642
- http://secunia.com/advisories/44857
- http://www.securityfocus.com/bid/48181
- http://www.securitytracker.com/id?1025637
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-040
- https://exchange.xforce.ibmcloud.com/vulnerabilities/67736
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12642
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2011-1889
→ the Explorer · watch your stack · NVD