Show filters
187 Total Results
Displaying 161-170 of 187
Sort by:
Attacker Value
Unknown

CVE-2002-0373

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
The Windows Media Device Manager (WMDM) Service in Microsoft Windows Media Player 7.1 on Windows 2000 systems allows local users to obtain LocalSystem rights via a program that calls the WMDM service to connect to an invalid local storage device, aka "Privilege Elevation through Windows Media Device Manager Service".
0
Attacker Value
Unknown

CVE-2002-0340

Disclosure Date: June 25, 2002 (last updated February 22, 2025)
Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.
0
Attacker Value
Unknown

CVE-2001-1552

Disclosure Date: December 31, 2001 (last updated February 22, 2025)
ssdpsrv.exe in Windows ME allows remote attackers to cause a denial of service by sending multiple newlines in a Simple Service Discovery Protocol (SSDP) message. NOTE: multiple replies to the original post state that the problem could not be reproduced.
0
Attacker Value
Unknown

CVE-2001-0877

Disclosure Date: December 20, 2001 (last updated February 22, 2025)
Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service via (1) a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount of traffic (e.g., chargen), or (2) via a spoofed SSDP announcement to broadcast or multicast addresses, which could cause all UPnP clients to send traffic to a single target system.
0
Attacker Value
Unknown

CVE-2001-0876

Disclosure Date: December 20, 2001 (last updated February 22, 2025)
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL.
0
Attacker Value
Unknown

CVE-2001-0719

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Buffer overflow in Microsoft Windows Media Player 6.4 allows remote attackers to execute arbitrary code via a malformed Advanced Streaming Format (ASF) file.
0
Attacker Value
Unknown

CVE-2001-0721

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Universal Plug and Play (UPnP) in Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service (memory consumption or crash) via a malformed UPnP request.
0
Attacker Value
Unknown

CVE-2001-0541

Disclosure Date: September 20, 2001 (last updated February 22, 2025)
Buffer overflow in Microsoft Windows Media Player 7.1 and earlier allows remote attackers to execute arbitrary commands via a malformed Windows Media Station (.NSC) file.
0
Attacker Value
Unknown

CVE-2001-0238

Disclosure Date: July 02, 2001 (last updated February 22, 2025)
Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests.
0
Attacker Value
Unknown

CVE-2001-0243

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Windows Media Player 7 and earlier stores Internet shortcuts in a user's Temporary Files folder with a fixed filename instead of in the Internet Explorer cache, which causes the HTML in those shortcuts to run in the Local Computer Zone instead of the Internet Zone, which allows remote attackers to read certain files.
0