VDB
CVE-2001-0242
CVE-2001-0242
PUBLISHED
CVSS 7.5 HIGH
Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the ".ASX Buffer Overrun" vulnerability as discussed in MS:MS00-090.
EPSS 12.67% · 94.1th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
12.67%
94.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| microsoft | windows_media_player | 6.3, 7, 6.4 |
Timeline
- May 24, 2001 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- VU#187528 third-party-advisory
- mediaplayer-asx-bo(5574) vdb
- 20010502 Microsoft Media Player ASX Parser buffer overflow vulnerability mailing-list
- 2686 vdb
- 2677 vdb
- 20010506 Re: Microsoft Media Player ASX Parser buffer overflow vulnerability mailing-list
- MS01-029 vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2001-0242 advisory