CVE-2002-0340
Last modified
CVE-2002-0340 is a vulnerability of currently unknown severity. Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.. EPSS estimates a 3.87% chance of exploitation in the next 30 days.
Description
Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Media Player | <= 8.00.00.4477 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-0340?
How severe is CVE-2002-0340?
How do I fix CVE-2002-0340?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-0334xtell (xtelld) 1.91.1 and earlier, and 2.x before 2.7, allow…
- CVE-2002-0335Buffer overflow in Galacticomm Worldgroup web server 3.20 an…
- CVE-2002-0336Buffer overflow in Galacticomm Worldgroup FTP server 3.20 an…
- CVE-2002-0337RealPlayer 8 allows remote attackers to cause a denial of se…
- CVE-2002-0338The Bat! 1.53d and 1.54beta, and possibly other versions, al…
- CVE-2002-0339Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding …
- CVE-2002-0341GWWEB.EXE in GroupWise Web Access 5.5, and possibly other ve…
- CVE-2002-0342Kmail 1.2 on KDE 2.1.1 allows remote attackers to cause a de…
- CVE-2002-0343Hotline Client 1.8.5 stores sensitive user information, incl…
- CVE-2002-0344Symantec LiveUpdate 1.5 and earlier in Norton Antivirus stor…
- CVE-2002-0345Symantec Ghost 7.0 stores usernames and passwords in plainte…
- CVE-2002-0346Cross-site scripting vulnerability in Cobalt RAQ 4 allows re…
Are you affected by CVE-2002-0340?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
