Remote Code Execution Vulnerability in Windows Media Player - MS08-054
|ID: oval:org.secpod.oval:def:2648||Date: (C)2011-11-02 (M)2017-10-04|
|Class: PATCH||Family: windows|
The host is missing a critical security update according to Microsoft security bulletin, MS08-054. The update is required to fix remote code execution vulnerability. A flaw is present in Windows Media Player, which fails to handle a specially crafted audio file is streamed from a Windows Media server. Successful exploitation could allow an attacker to obtain credentials and it could also allow attackers to install programs, view, change, or delete data or create new accounts with full user rights.
|Microsoft Windows Server 2008|
|Microsoft Windows Vista|
|Microsoft Windows XP|
|Microsoft Media Player|