A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2013-3900

Microsoft WinVerifyTrust function Remote Code Execution

Published
2022-01-10
Modified
2026-07-31
Sources
cisa-kev

Summary

A remote code execution vulnerability exists in the way that the WinVerifyTrust function handles Windows Authenticode signature verification for PE files.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.