CVE-2002-0372
published 2002-07-03CVE-2002-0372: Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) security…
PriorityP426high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
14.42%
96.2th percentile
Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the "Cache Path Disclosure via Windows Media Player".
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_media_player | — | — |
| microsoft | windows_media_player | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.iss.net/security_center/static/9420.phphttp://www.securityfocus.com/bid/5107https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-032https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A281http://www.iss.net/security_center/static/9420.phphttp://www.securityfocus.com/bid/5107https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-032https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A281
2002-07-03
Published