
CVE-2013-3918: CVE-2013-3918: Windows ActiveX (icardie.dll) out-of-bounds write allows RCE via crafted webpage; CISA added to KEV—remediate or discontinue EoL/EoS.
Post summary
CISA has listed CVE-2013-3918 in the KEV, confirming it is being exploited in the wild to achieve remote code execution via crafted web pages, and the advisory recommends remediation or discontinuation.
