CVE-2012-0016
Microsoft Expression Design - Privilege Escalation
Title source: llmDescription
Untrusted search path vulnerability in Microsoft Expression Design; Expression Design SP1; and Expression Design 2, 3, and 4 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .xpr or .DESIGN file, aka "Expression Design Insecure Library Loading Vulnerability."
Exploits (1)
References (3)
Scores
EPSS
0.4402
EPSS Percentile
97.5%
Details
Status
published
Products (4)
microsoft/expression_design
(2 CPE variants)
microsoft/expression_design
2
microsoft/expression_design
3
microsoft/expression_design
4
Published
Mar 13, 2012
Tracked Since
Feb 18, 2026