CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3064  CVE-2001-0243  Entry  Windows Media Player 7 and earlier stores Internet shortcuts in a user"s Temporary Files folder with a fixed filename instead of in the Internet Explorer cache, which causes the HTML in those shortcuts to run in the Local Computer Zone instead of the Internet Zone, which allows remote attackers to read certain files.        View
2958  CVE-2001-0137  Entry  Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download" vulnerability.        View
22705  CVE-2006-6601  Candidate  Windows Media Player 10.00.00.4036 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial of service via a .MID (MIDI) file with a malformed header chunk without any track chunks, possibly involving (1) number of tracks of (2) time division fields that are set to 0.  Assigned (20061215)  None (candidate not yet proposed)    View
4732  CVE-2002-0340  Candidate  Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file"s extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.  Proposed (20020502)  MODIFY(1) Frech | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:mediaplayer-wmf-file-spoof(9971)  View
7431  CVE-2003-0604  Candidate  Windows Media Player (WMP) 7 and 8, as running on Internet Explorer and possibly other Microsoft products that process HTML, allows remote attackers to bypass zone restrictions and access or execute arbitrary files via an IFRAME tag pointing to an ASF file whose Content-location contains a File:// URL.  Assigned (20030725)  NOOP(1) Christey  Christey> consider MSKB:828026, which *might* address this problem.  View

Page 181 of 20943, showing 5 records out of 104715 total, starting on record 901, ending on 905

Actions