PT-2021-3009 · Microsoft · Web Media Extensions

Wayne Low

·

Published

2021-05-11

·

Updated

2023-08-02

·

CVE-2021-28465

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Web Media Extensions (affected versions not specified)
Description The issue is related to incorrect code generation management in the Web Media Extensions package, allowing an attacker to execute arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Code Injection

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2021-02611
CVE-2021-28465
ZDI-21-572
ZDI-21-579

Affected Products

Web Media Extensions