Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mfj2-j4w4-7j9q

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

A remote code execution vulnerability exists when Windows Media Audio Decoder improperly handles objects, aka 'Windows Media Audio Decoder Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1593.

A remote code execution vulnerability exists when Windows Media Audio Decoder improperly handles objects, aka 'Windows Media Audio Decoder Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1593.

EPSS

Процентиль: 83%
0.01954
Низкий

7.6 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.6
nvd
почти 5 лет назад

<p>A remote code execution vulnerability exists when Windows Media Audio Decoder improperly handles objects. An attacker who successfully exploited the vulnerability could take control of an affected system.</p> <p>There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to open a specially crafted document, or by convincing a user to visit a malicious webpage.</p> <p>The security update addresses the vulnerability by correcting how Windows Media Audio Decoder handles objects.</p>

CVSS3: 7.6
msrc
почти 5 лет назад

Windows Media Audio Decoder Remote Code Execution Vulnerability

CVSS3: 7.6
fstec
почти 5 лет назад

Уязвимость аудикодера Windows Media Player операционной системы Windows, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 83%
0.01954
Низкий

7.6 High

CVSS3

Дефекты

CWE-94