CVE-2010-4588
The WBEMSingleView.ocx ActiveX control 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier allows remote attackers to execute arbitrary code via a crafted argument to the ReleaseContext method, a different vector than CVE-2010-3973,…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 32.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The WBEMSingleView.ocx ActiveX control 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier allows remote attackers to execute arbitrary code via a crafted argument to the ReleaseContext method, a different vector than CVE-2010-3973, possibly an untrusted pointer dereference.
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 32.82% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- microsoft/wmi administrative tools
- Source
- cve@mitre.org
References
- http://blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspx
- http://secunia.com/advisories/42693Vendor Advisory
- http://twitter.com/carsteneiram/status/17526155733110784
- http://www.kb.cert.org/vuls/id/725596US Government Resource
- http://www.wooyun.org/bug.php?action=view&id=1006Exploit
- http://blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspx
- http://secunia.com/advisories/42693Vendor Advisory
- http://twitter.com/carsteneiram/status/17526155733110784
- http://www.kb.cert.org/vuls/id/725596US Government Resource
- http://www.wooyun.org/bug.php?action=view&id=1006Exploit
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.