CVE-2011-1889
Summary
| CVE | CVE-2011-1889 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-06-16 20:55:00 UTC |
| Updated | 2018-10-12 22:01:00 UTC |
| Description | The NSPLookupServiceNext function in the client in Microsoft Forefront Threat Management Gateway (TMG) 2010 allows remote attackers to execute arbitrary code via vectors involving unspecified requests, aka "TMG Firewall Client Memory Corruption Vulnerability." |
Risk And Classification
EPSS: 0.853530000 probability, percentile 0.993580000 (date 2026-04-02)
CISA KEV: Listed on 2022-03-03; due 2022-03-24; ransomware use Unknown
Problem Types: CWE-119
CISA Known Exploited Vulnerability
| Vendor | Microsoft |
|---|---|
| Product | Forefront Threat Management Gateway (TMG) |
| Name | Microsoft Forefront TMG Remote Code Execution Vulnerability |
| Required Action | Apply updates per vendor instructions. |
| Notes | https://nvd.nist.gov/vuln/detail/CVE-2011-1889 |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microsoft | Forefront Threat Management Gateway | 2010 | All | All | All |
| Application | Microsoft | Forefront Threat Management Gateway | 2010 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Microsoft Forefront Threat Management Gateway Bounds Validation Flaw in Winsock Provider Lets Remote Users Execute Arbitrary Code - SecurityTracker | SECTRACK | www.securitytracker.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Repository / Oval Repository | OVAL | oval.cisecurity.org | |
| Microsoft Threat Management Gateway Firewall Client Vulnerability - Secunia.com | SECUNIA | secunia.com | |
| Microsoft Forefront Threat Management Gateway (TMG) Firewall Client Memory Corruption Vulnerability | BID | www.securityfocus.com | |
| Microsoft Security Bulletin MS11-040 - Critical | Microsoft Docs | MS | docs.microsoft.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.