← Back to browse · API

CVE-2013-3896

Severity
MEDIUM
CVSS
5.5
EPSS
0.6961
Risk score
71.36
CISA KEV
Yes
PoC
No
Published
2013-10-09
Modified
2025-10-22
First seen
2026-08-07
Aliases
EUVD-2013-3828, GHSA-8WM7-83P7-M6FH
Products
Microsoft:Silverlight, n/a:n/a n/a
Sources
cisa.gov CVE-2013-3896
euvd EUVD-2013-3828

Description

Microsoft Silverlight 5 before 5.1.20913.0 does not properly validate pointers during access to Silverlight elements, which allows remote attackers to obtain sensitive information via a crafted Silverlight application, aka "Silverlight Vulnerability."

References