Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2019-1481

Опубликовано: 10 дек. 2019
Источник: msrc
CVSS3: 5.5
EPSS Средний

Описание

Windows Media Player Information Disclosure Vulnerability

An information disclosure vulnerability exists in Windows Media Player when it fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could potentially read data that was not intended to be disclosed.

To exploit this vulnerability, an attacker would have to log on to an affected system and open a specifically crafted file.

The update addresses the vulnerability by correcting how Windows Media Player handles objects in memory.

FAQ

What type of information could be disclosed by this vulnerability?

The type of information that could be disclosed if an attacker successfully exploited this vulnerability is uninitialized memory.

Обновления

ПродуктСтатьяОбновление
Windows 7 for 32-bit Systems Service Pack 1
Windows 7 for x64-based Systems Service Pack 1

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

N/A

Older Software Release

Exploitation Less Likely

EPSS

Процентиль: 97%
0.3605
Средний

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
почти 6 лет назад

An information disclosure vulnerability exists in Windows Media Player when it fails to properly handle objects in memory, aka 'Windows Media Player Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1480.

CVSS3: 4.3
github
больше 3 лет назад

An information disclosure vulnerability exists in Windows Media Player when it fails to properly handle objects in memory, aka 'Windows Media Player Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1480.

CVSS3: 5.5
fstec
почти 6 лет назад

Уязвимость компонента Windows Media Player операционной системы Windows, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 97%
0.3605
Средний

5.5 Medium

CVSS3