CVE-2012-1872: Microsoft Internet Explorer

Medium severity, CVSS 6.1. EPSS: 6.4% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 6 through 9 allows remote attackers to inject arbitrary web script or HTML via crafted character sequences with EUC-JP encoding, aka "EUC-JP Character Encoding Vulnerability."

Affected products

  • Microsoft Internet Explorer: version 6 only; version 7 only; version 8 only; version 9 only

Published 2012-06-12. Last modified 2026-06-16.