CVE-2010-0019

Microsoft Silverlight 3 before 3.0.50611.0 on Windows, and before 3.0.41130.0 on Mac OS X, does not properly handle pointers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and framework outage) via a crafted web site, aka "Microsoft Silverlight Memory Corruption Vulnerability."
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
microsoftsilverlight
𝑥
≤ 3.0.40818.0
microsoftsilverlight
3.0.40624.00
microsoftsilverlight
3.0.40723.0
microsoftsilverlight
𝑥
≤ 3.0.50106.0
microsoftsilverlight
3.0.40624.00
microsoftsilverlight
3.0.40723.0
microsoftsilverlight
3.0.40818.0
𝑥
= Vulnerable software versions