CVE-2002-0372
Last modified
CVE-2002-0372 is a vulnerability of currently unknown severity. Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the "Cache Path Disclosure via Windows Media Player".. EPSS estimates a 14.42% chance of exploitation in the next 30 days.
Description
Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) security mechanisms and run code via an executable .wma media file with a license installation requirement stored in the IE cache, aka the "Cache Path Disclosure via Windows Media Player".
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Media Player | All versions |
| Microsoft | Windows Media Player | 6.4 |
| Microsoft | Windows Media Player | 7.1 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-0372?
How severe is CVE-2002-0372?
How do I fix CVE-2002-0372?
Are you affected by CVE-2002-0372?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
