PT-2008-3748 · Microsoft · Windows Media Player+1
Published
2008-09-10
·
Updated
2018-10-30
·
CVE-2008-2253
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Microsoft Windows Media Player version 11
Description:
The issue allows remote attackers to execute arbitrary code via a crafted audio-only file that is streamed from a Server-Side Playlist (SSPL) on Windows Media Server.
Recommendations:
For Microsoft Windows Media Player version 11, update to a newer version that contains a fix for this issue.
Fix
RCE
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows Media Player
Windows Media Server