Immunity, Inc.
Name wp_ms12_027
CVE CVE-2012-0158
Exploit Pack White_Phosphorus
DescriptionMS12-027 Microsoft Windows Common Controls MSCOMCTL.OCX Remote Code Execution
NotesReferences: http://technet.microsoft.com/en-us/security/bulletin/ms12-027
CVE Name: CVE-2012-0158
VENDOR: Microsoft
Notes:
This is a client-side exploit - run the module and send the created file to the target user.
Module requires MSGR3EN.DLL be loaded by Word before to ensure success. This may require Word is opened before loading the exploit .rtf
Size constraints limit shellcode options.

Repeatability: One Shot
MSADV: MS12-027
Date public: 2012-04-10
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0158
CVSS: 0.0

Learn more about the CANVAS Exploit Pack here: White_Phosphorus