CVE-2003-0726: Medium severity realnetworks realone desktop manager vulnerability
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previously loaded URL, as demonstrated using a "javascript:" URL in the area tag.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0726?
CVE-2003-0726 is considered a critical vulnerability due to its ability to allow remote code execution through scripting in untrusted zones.
How do I fix CVE-2003-0726?
To fix CVE-2003-0726, it is recommended to update to the latest version of the RealOne player or disable scripting protocols in the application settings.
What software is affected by CVE-2003-0726?
CVE-2003-0726 affects several versions of RealOne Player and RealOne Desktop Manager.
What type of attack is possible with CVE-2003-0726?
CVE-2003-0726 allows attackers to execute arbitrary scripts in the "My Computer" zone, potentially compromising user systems.
Is CVE-2003-0726 still a concern today?
While CVE-2003-0726 is an older vulnerability, systems running affected software without updates may still be at risk.