CVE-2013-3896

CVE Published 2013-10-09
Related CWE(s) CWE-20: Improper Input Validation
Related Vendor(s) microsoft
Related Product(s) silverlight
Exploitation Reported (CISA KEV) 2022-05-25
CVSS 3 Base Score 5.5 (MEDIUM)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector LOCAL

Microsoft Silverlight 5 before 5.1.20913.0 does not properly validate pointers during access to Silverlight elements, which allows remote attackers to obtain sensitive information via a crafted Silverlight application, aka "Silverlight Vulnerability."

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References