CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS13-010 | Vulnerability in Vector Markup Language Could Allow Remote Code Execution (2797052) | Internet Explorer | Critical | 13-02-2013 |
Technical Information
Brief overview of the risk:
This security update resolves a privately reported vulnerability in the Microsoft implementation of Vector Markup Language (VML). The vulnerability could allow remote code execution if a user viewed a specially crafted webpage using Internet Explorer.
Detailed Information on the risk:
A remote code execution vulnerability exists in the way that Internet Explorer handles objects in memory. An attacker could exploit the vulnerability by constructing a specially crafted webpage. When a user views the webpage, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user.
Further information on this exploit is available at : MS13-010
Affected Software
Internet Explorer 6Internet Explorer 7
Internet Explorer 8
Internet Explorer 9
Internet Explorer 10