Unrated severityNVD Advisory· Published Dec 23, 2010· Updated Apr 29, 2026
CVE-2010-3973
CVE-2010-3973
Description
The WMITools ActiveX control in WBEMSingleView.ocx 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier in Microsoft Windows XP SP2 and SP3 allows remote attackers to execute arbitrary code via a crafted argument to the AddContextRef method, possibly an untrusted pointer dereference, aka "Microsoft WMITools ActiveX Control Vulnerability."
Affected products
1- cpe:2.3:a:microsoft:wmi_administrative_tools:*:*:*:*:*:*:*:*Range: <=1.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- www.exploit-db.com/exploits/15809nvdExploit
- www.securityfocus.com/bid/45546nvdExploit
- www.wooyun.org/bug.phpnvdExploit
- secunia.com/advisories/42693nvdVendor Advisory
- www.vupen.com/english/advisories/2010/3301nvdVendor Advisory
- www.kb.cert.org/vuls/id/725596nvdUS Government Resource
- blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspxnvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-027nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/64250nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12475nvd
News mentions
0No linked articles in our index yet.