Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote malicious users to execute arbitrary code via HTML with an EMBED element containing a long src attribute.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft windows-nt datacenter_server |
||
microsoft windows xp - |
||
microsoft windows 2000 |
||
microsoft windows 2003 server datacenter_edition_64-bit |
||
microsoft windows 2003 server enterprise_edition |
||
microsoft windows server 2000 sp2 |
||
microsoft windows server 2000 sp3 |
||
microsoft windows xp |
||
microsoft windows 2000 - |
||
microsoft windows-nt xp |
||
microsoft windows-nt xp_tablet_pc |
||
microsoft windows 2000 advanced server |
||
microsoft windows 2003 server enterprise_edition_64-bit |
||
microsoft windows 2003 server standard |
||
microsoft windows server 2003 datacenter_sp1 |
||
microsoft windows server 2003 enterprise_sp1 |
||
microsoft windows 2000 advanced server sp4 |
||
microsoft windows 2003 server datacenter_edition |
||
microsoft windows server 2000 none |
||
microsoft windows server 2000 sp1 |
||
microsoft windows 2000 advanced server sp1 |
||
microsoft windows 2000 advanced server sp2 |
||
microsoft windows 2000 advanced server sp3 |
||
microsoft windows 2003 server standard_64-bit |
||
microsoft windows 2003 server web_edition |
||
microsoft windows server 2003 standard_sp1 |
||
microsoft windows server 2003 web_edition_sp1 |