Home/CVEs/CVE-2013-3900/

CVE-2013-3900 - Microsoft WinVerifyTrust function Remote Code Execution

Project:Microsoft

Product:WinVerifyTrust function

Date Added:2022-01-10Due Date:2022-07-10

Vulnerability Name

Microsoft WinVerifyTrust function Remote Code Execution

Description

A remote code execution vulnerability exists in the way that the WinVerifyTrust function handles Windows Authenticode signature verification for PE files.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2013-3900