<< Back
CVE Number Vulnerability Product Severity Date
MS13-010 Vulnerability in Vector Markup Language Could Allow Remote Code Execution (2797052) Internet Explorer Critical 13-02-2013

Technical Information

Brief overview of the risk:
This security update resolves a privately reported vulnerability in the Microsoft implementation of Vector Markup Language (VML). The vulnerability could allow remote code execution if a user viewed a specially crafted webpage using Internet Explorer.
Detailed Information on the risk:

A remote code execution vulnerability exists in the way that Internet Explorer handles objects in memory. An attacker could exploit the vulnerability by constructing a specially crafted webpage. When a user views the webpage, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user.

Further information on this exploit is available at : MS13-010

Affected Software

Internet Explorer 6
Internet Explorer 7
Internet Explorer 8
Internet Explorer 9
Internet Explorer 10