Lucene search

K
cveMitreCVE-2001-0242
HistoryJun 27, 2001 - 4:00 a.m.

CVE-2001-0242

2001-06-2704:00:00
mitre
web.nvd.nist.gov
26
microsoft
windows media player
buffer overflow
remote command execution

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.006

Percentile

77.6%

Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the “.ASX Buffer Overrun” vulnerability as discussed in MS:MS00-090.

Affected configurations

Nvd
Node
microsoftwindows_media_playerMatch6.3
OR
microsoftwindows_media_playerMatch6.4
OR
microsoftwindows_media_playerMatch7
VendorProductVersionCPE
microsoftwindows_media_player6.3cpe:2.3:a:microsoft:windows_media_player:6.3:*:*:*:*:*:*:*
microsoftwindows_media_player6.4cpe:2.3:a:microsoft:windows_media_player:6.4:*:*:*:*:*:*:*
microsoftwindows_media_player7cpe:2.3:a:microsoft:windows_media_player:7:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.006

Percentile

77.6%

Related for CVE-2001-0242