PT-2020-3671 · Microsoft · Windows Media Foundation+1

Yangkang

·

Published

2020-08-11

·

Updated

2024-01-19

·

CVE-2020-1477

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows Media Foundation (affected versions not specified)
Description A memory corruption issue exists due to improper handling of objects in memory by Windows Media Foundation. This could allow an attacker to install programs, view, change, or delete data, or create new accounts with full user rights. The vulnerability can be exploited through various means, such as convincing a user to open a specially crafted document or visit a malicious webpage. The issue is related to a buffer overflow in memory. Remote attackers may be able to execute arbitrary code and affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04019
CVE-2020-1477

Affected Products

Windows
Windows Media Foundation