Back

HIGH KEV Used in ransomware campaigns

Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets during decoding, which allows remote attackers to execute arbitrary code or cause a denial of service (object-header corruption) via a crafted web site, aka "Silverlight Runtime Remote Code Execution Vulnerability."

Published Jan 13, 2016 ·Due Jun 15, 2022

Description

Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets during decoding, which allows remote attackers to execute arbitrary code or cause a denial of service (object-header corruption) via a crafted web site, aka "Silverlight Runtime Remote Code Execution Vulnerability."

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (0)

No CWE recorded.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Jan 13, 2016
Updated Aug 14, 2026
Reserved Dec 4, 2015
CISA Vulnrichment
Updated Feb 10, 2025
NVD
Status Analyzed
Modified Aug 14, 2026
Red Hat
Severity n/a
Public date n/a