VDB
GSD-2006-0005
GSD-2006-0005
PUBLISHED
Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
Timeline
- Feb 14, 2006 CVE Published
- Sep 9, 2025 PoC Published
- Apr 17, 2026 Security Advisory
References
- ADV-2006-0575 vdb
- 16644 vdb
- win-mediaplayer-plugin-embed-bo(24493) vdb
- 1015628 vdb
- 20060214 Microsoft Windows Media Player Plugin Buffer Overflow Vulnerability third-party-advisory
- oval:org.mitre.oval:def:1559 vdb
- TA06-045A third-party-advisory
- 18852 third-party-advisory
- VU#692060 advisory
- MS06-006 advisory