CVE-2003-0726
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previously loaded URL, as demonstrated using a "javascript:" URL in the area tag.
Scoring
- CVSS base score
- 0.38
- EPSS probability
- 9.58%
- Published
- 2003-09-03
- Last modified
- 2026-03-16
Affected products
- n/a n/a