CVE Vulnerabilities

CVE-2002-0372

Published: Jul 03, 2002 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorers (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the Cache Path Disclosure via Windows Media Player.

Affected Software

NameVendorStart VersionEnd Version
Windows_media_playerMicrosoft- (including)- (including)
Windows_media_playerMicrosoft6.4 (including)6.4 (including)
Windows_media_playerMicrosoft7.1 (including)7.1 (including)

References