Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Vulnerabilities CVE-2013-0074

CVE-2013-0074

Medium
Open
KEV
TLP:CLEAR

Microsoft Silverlight Double Dereference Vulnerability

NVD CVE.org
Critical Infrastructure

AI Analysis

No AI analysis yet.

Description

Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML object rendering, which allows remote attackers to execute arbitrary code via a crafted Silverlight application, aka "Silverlight Double Dereference Vulnerability."

Details

EPSS Score
81.87%

99.6th percentile

Confidence
100%
Published
Mar 13, 2013
Last Modified
Aug 14, 2026
CISA KEV
Date Added
May 25, 2022
Patch Due
Jun 15, 2022
Used in ransomware campaigns
Required Action
The impacted product is end-of-life and should be disconnected if still in use.
No notes yet. Click "Add Note" to create the first analysis note.
No opinions yet. Be the first to assess this intelligence.
Leaving Threaticon

This link opens an external site that isn't part of the platform.