Lucene search

K
cve[email protected]CVE-2002-0481
HistoryAug 12, 2002 - 4:00 a.m.

CVE-2002-0481

2002-08-1204:00:00
web.nvd.nist.gov
22
cve-2002-0481
windows media player
outlook 2002
security breach
javascript execution.

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.2 High

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

75.7%

An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security settings and execute Javascript via an IFRAME in an HTML email message that references .WMS (Windows Media Skin) or other WMP media files, whose onload handlers execute the player.LaunchURL() Javascript function.

Affected configurations

NVD
Node
microsoftoutlookMatch2002

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.2 High

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

75.7%

Related for CVE-2002-0481