VYPR
Unrated severityNVD Advisory· Published Sep 11, 2013· Updated Jun 16, 2026

CVE-2013-3859

CVE-2013-3859

Description

Microsoft Pinyin IME 2010, when used in conjunction with Microsoft Office 2010 SP1, does not properly restrict configuration options, which allows local users to gain privileges by starting Internet Explorer from the IME toolbar, aka "Chinese IME Vulnerability."

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Microsoft/Office3 versions
    cpe:2.3:a:microsoft:office:2010:sp1:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:office:2010:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2010:sp1:x64:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2010:sp1:x86:*:*:*:*:*
  • cpe:2.3:a:microsoft:pinyin_ime:2010:*:*:*:*:*:x64:*+ 2 more
    • cpe:2.3:a:microsoft:pinyin_ime:2010:*:*:*:*:*:x64:*
    • cpe:2.3:a:microsoft:pinyin_ime:2010:*:*:*:*:x86:*:*
    • (no CPE)range: =2010

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.