PT-2002-1406 · Microsoft · Windows Media Player

Published

2002-05-03

·

Updated

2016-10-18

·

CVE-2002-0340

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Windows Media Player versions 8.00.00.4477 and possibly other versions
Description The issue allows attackers to conduct unauthorized activities via Trojan horse files containing .wmf content. This is because Windows Media Player automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf.
Recommendations For version 8.00.00.4477, consider disabling the automatic detection and execution of .wmf content until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-0340

Affected Products

Windows Media Player