CVE-2013-3127
- EPSS 45.34%
- Published 10.07.2013 03:46:09
- Last modified 11.04.2025 00:51:21
The Microsoft WMV video codec in wmv9vcm.dll, wmvdmod.dll in Windows Media Format Runtime 9 and 9.5, and wmvdecod.dll in Windows Media Format Runtime 11 and Windows Media Player 11 and 12 allows remote attackers to execute arbitrary code via a crafte...
CVE-2010-1879
- EPSS 57.58%
- Published 08.06.2010 22:30:01
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Quartz.dll for DirectShow; Windows Media Format Runtime 9, 9.5, and 11; Media Encoder 9; and the Asycfilt.dll COM component allows remote attackers to execute arbitrary code via a media file with crafted compression data,...
CVE-2009-2525
- EPSS 36.25%
- Published 14.10.2009 10:30:01
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACM), does not properly initialize unspecified functions within compressed audio files, which allows remote atta...
CVE-2009-0555
- EPSS 31.95%
- Published 14.10.2009 10:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACM), does not properly process Advanced Systems Format (ASF) files, which allows remote attackers to execute ar...
CVE-2009-2498
- EPSS 36.52%
- Published 08.09.2009 22:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Format Runtime 9.0, 9.5, and 11 and Windows Media Services 9.1 and 2008 do not properly parse malformed headers in Advanced Systems Format (ASF) files, which allows remote attackers to execute arbitrary code via a crafted (1) ...
CVE-2009-2499
- EPSS 37.78%
- Published 08.09.2009 22:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows remote attackers to execute arbitrary code via an MP3 file with crafted metadata that triggers memory ...
- EPSS 52.28%
- Published 10.12.2008 14:00:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the Service Principal Name (SPN) identifier when validating replies to authentication requests, which all...
CVE-2007-0064
- EPSS 74.23%
- Published 12.12.2007 00:46:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in Windows Media Format Runtime 7.1, 9, 9.5, 9.5 x64 Edition, 11, and Windows Media Services 9.1 for Microsoft Windows 2000, XP, Server 2003, and Vista allows user-assisted remote attackers to execute arbitrary code via a c...