9.3
CVSSv2

CVE-2010-2745

Published: 13/10/2010 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Windows Media Player (WMP) 9 through 12 does not properly deallocate objects during a browser reload action, which allows user-assisted remote malicious users to execute arbitrary code via crafted media content referenced in an HTML document, aka "Windows Media Player Memory Corruption Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_media_player 9

microsoft windows_media_player 10

microsoft windows_media_player 11

microsoft windows_media_player 12

Exploits

Source: codegooglecom/p/skylined/issues/detail?id=21 # Exploit Title: Firefox 3510 & 366 WMP Memory Corruption Using Popups # Date: 2010-10-13 # Author: berendjanwever # Version: FF 3510 & 366 with WMP 10 & 11 # Tested on: Windows XP sp3 <HTML> <HEAD> <SCRIPT> function go() { var ...