Lucene search

K
cveMitreCVE-2002-0340
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2002-0340

2002-06-2504:00:00
mitre
web.nvd.nist.gov
24
cve-2002-0340
wmp vulnerability
.wmf content
unauthorized activities
trojan horse files.

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

71.9%

Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file’s extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.

Affected configurations

Nvd
Node
microsoftwindows_media_playerRange8.00.00.4477
VendorProductVersionCPE
microsoftwindows_media_player*cpe:2.3:a:microsoft:windows_media_player:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

71.9%

Related for CVE-2002-0340