9.3

CVE-2015-1728

Microsoft Windows Media Player 10 through 12 allows remote attackers to execute arbitrary code via a crafted DataObject on a web site, aka "Windows Media Player RCE via DataObject Vulnerability."

Data is provided by the National Vulnerability Database (NVD)
MicrosoftWindows Media Player Version10.00.00.3646
MicrosoftWindows Media Player Version10.00.00.3990
MicrosoftWindows Media Player Version10.00.00.4019
MicrosoftWindows Media Player Version10.00.00.4036
MicrosoftWindows Media Player Version11.0.5721.5145
MicrosoftWindows Media Player Version11.0.5721.5230
MicrosoftWindows Media Player Version11.0.6000.6324
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 26.89% 0.961
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C