CVE-2003-0604

Windows Media Player (WMP) 7 and 8, as running on Internet Explorer and possibly other Microsoft products that process HTML, allows remote attackers to bypass zone restrictions and access or execute arbitrary files via an IFRAME tag pointing to an ASF file whose Content-location contains a File:// URL.

Scoring

CVSS base score
0.34
EPSS probability
8.39%
Published
2003-07-29
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs