PT-2002-1406 · Microsoft · Windows Media Player
Published
2002-05-03
·
Updated
2016-10-18
·
CVE-2002-0340
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Windows Media Player versions 8.00.00.4477 and possibly other versions
Description
The issue allows attackers to conduct unauthorized activities via Trojan horse files containing .wmf content. This is because Windows Media Player automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf.
Recommendations
For version 8.00.00.4477, consider disabling the automatic detection and execution of .wmf content until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows Media Player