9.3
CVSSv2

CVE-2016-3367

Published: 14/09/2016 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

StringBuilder in Microsoft Silverlight 5 prior to 5.1.50709.0 does not properly allocate memory for string-insert and string-append operations, which allows remote malicious users to execute arbitrary code via a crafted web site, aka "Microsoft Silverlight Memory Corruption Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft silverlight 5.0