CISA Known Exploited Vulnerability

CVE-2016-0034 Ransomware

Microsoft · Silverlight

Microsoft Silverlight Runtime Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE CWE-20
Ransomware Known

CISA description

Microsoft Silverlight mishandles negative offsets during decoding, which allows attackers to execute remote code or cause a denial-of-service (DoS).

Required action

The impacted products are end-of-life and should be disconnected if still in use.