CVE-2013-0074CISA KEV
Microsoft Silverlight Double Dereference Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Silverlight does not properly validate pointers during HTML object rendering, which allows remote attackers to execute code via a crafted Silverlight application.
- Product
- Silverlight
- Added to KEV
- 25 May 2022
- Federal remediation due
- 15 Jun 2022
- Known ransomware use
- Yes