Back

HIGH KEV Used in ransomware campaigns

Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML object rendering, which allows remote attackers to execute arbitrary code via a crafted Silverlight application, aka "Silverlight Double Dereference Vulnerability."

Published Mar 13, 2013 ·Due Jun 15, 2022

Description

Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML object rendering, which allows remote attackers to execute arbitrary code via a crafted Silverlight application, aka "Silverlight Double Dereference Vulnerability."

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (0)

No CWE recorded.

References (5)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Mar 13, 2013
Updated Aug 14, 2026
Reserved Nov 27, 2012
CISA Vulnrichment
Updated Feb 10, 2025
NVD
Status Analyzed
Modified Aug 14, 2026
Red Hat
Severity n/a
Public date n/a