PoC Index

CVE-2013-3896

KEVMEDIUM 5.5EPSS 69.6%

Microsoft Silverlight 5 before 5.1.20913.0 does not properly validate pointers during access to Silverlight elements, which allows remote attackers to obtain sensitive information via a crafted Silverlight application, aka "Silverlight Vulnerability."

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS v2.0
4.3 MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
EPSS
69.61% chance of exploitation in the next 30 days, 99th percentile
CISA KEV
added 2022-05-25
Published
2013-10-09
Updated
2025-10-22

Metasploit modules (1)

ExploitDB entries (1)

References

Related