Security Advisory

CVE-2013-0074

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-03-13 00:00:00
Last updated 2025-10-22 00:05:43
Assigner microsoft
State PUBLISHED

Description

Microsoft Silverlight 5, and 5 Developer Runtime, before 5.1.20125.0 does not properly validate pointers during HTML object rendering, which allows remote attackers to execute arbitrary code via a crafted Silverlight application, aka "Silverlight Double Dereference Vulnerability."