PT-2009-2915 · Microsoft · Windows

Aryeh Goretsky

+2

·

Published

2009-01-21

·

Updated

2023-12-07

·

CVE-2009-0243

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows (affected versions not specified)
Description The issue allows attackers to execute arbitrary code through various means, including inserting CD-ROM or DVD media, connecting a USB or Firewire device, mapping a network drive, or clicking on certain icons or options. This is related to the improper enforcement of the Autorun and NoDriveTypeAutoRun registry values and the Autorun.inf file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2009-0243

Affected Products

Windows