First published: Mon Mar 12 2001(Updated: )
Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Windows Media Player | =7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0137 is considered a critical vulnerability as it allows remote attackers to execute malicious Java applets.
To fix CVE-2001-0137, update to a patched version of Windows Media Player beyond version 7.
CVE-2001-0137 specifically affects Microsoft Windows Media Player version 7.
The impact of CVE-2001-0137 includes unauthorized execution of code, potentially leading to system compromise.
Yes, CVE-2001-0137 can be exploited remotely via the internet on vulnerable Internet Explorer clients.