← All CVEs

CVE-2004-1324

low · 2.6

The Microsoft Windows Media Player 9.0 ActiveX control may allow remote attackers to execute arbitrary web script in the Local computer zone via the (1) artist or (2) song fields of a music file, if the file is processed using Internet Explorer.

2.6
CVSS
16.7%
EPSS (exploit prob.)
97th
EPSS percentile
2004-12-18
Published

AV:N/AC:H/Au:N/C:N/I:P/A:N

Affected products

VendorProductAffected versions
microsoftwindows_media_player9

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-1324