AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-1898

HIGH · CVSS 9.3 EPSS 25.03%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-08-11 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 9.3. It affects Microsoft, Windows. Its EPSS score suggests a 25.0% probability of exploitation in the next 30 days. It may be remotely exploitable.

CVE
CVE-2010-1898
Severity
HIGH
CVSS
9.3
EPSS
25.03%
Microsoft Windows

Original NVD Description

The Common Language Runtime (CLR) in Microsoft .NET Framework 2.0 SP1, 2.0 SP2, 3.5, 3.5 SP1, and 3.5.1, and Microsoft Silverlight 2 and 3 before 3.0.50611.0 on Windows and before 3.0.41130.0 on Mac OS X, does not properly handle interfaces and delegations to virtual methods, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka "Microsoft Silverlight and Microsoft .NET Framework CLR Virtual Method Delegate Vulnerability."