CVE-2006-4702 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Microsoft Windows 2003 Server
3 documents3 sources
Severity
6.8MEDIUMNVD
EPSS
55.7%
top 1.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 13
Latest updateMay 1
Description
Buffer overflow in the Windows Media Format Runtime in Microsoft Windows Media Player (WMP) 6.4 and Windows XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted Advanced Systems Format (ASF) file.
CVSS vector
AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4