CVE-2013-3896
MEDIUM KEV RANSOMWAREMicrosoft Silverlight <5.1.20913.0 - Info Disclosure
Title source: llmDescription
Microsoft Silverlight 5 before 5.1.20913.0 does not properly validate pointers during access to Silverlight elements, which allows remote attackers to obtain sensitive information via a crafted Silverlight application, aka "Silverlight Vulnerability."
Exploits (1)
References (5)
Scores
CVSS v3
5.5
EPSS
0.8159
EPSS Percentile
99.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitation Intel
CISA KEV
2022-05-25
VulnCheck KEV
2021-02-11
InTheWild.io
2014-05-22
ENISA EUVD
EUVD-2013-3828
Ransomware Use
Confirmed
Classification
Status
draft
Affected Products (1)
microsoft/silverlight
< 5.1.20913.0
Timeline
Published
Oct 09, 2013
KEV Added
May 25, 2022
Tracked Since
Feb 18, 2026