PT-2013-4202 · Microsoft · Silverlight

Vitaliy Toropov

·

Published

2013-07-10

·

Updated

2018-10-12

·

CVE-2013-3178

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Silverlight versions prior to 5.1.20513.0
Description The issue is related to improper array initialization, which can be exploited by remote attackers to execute arbitrary code or cause a denial of service through a NULL pointer dereference. This can be achieved via a crafted Silverlight application.
Recommendations For versions prior to 5.1.20513.0, update to version 5.1.20513.0 or later to resolve the issue.

Fix

RCE

DoS

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3178

Affected Products

Silverlight