CVE-2004-1324

low Microsoft
CVSS v3 Base Score
2.6
AV:N/AC:H/Au:N/C:N/I:P/A:N
EPSS Score
16.7%
Exploitation probability in 30 days
Top 5% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
High
Confidentiality
None
Integrity
P
Availability
None
Published: December 18, 2004 (7817 days ago)
Last Modified: April 16, 2026
Vendor: Microsoft
Source: NVD

Description

The Microsoft Windows Media Player 9.0 ActiveX control may allow remote attackers to execute arbitrary web script in the Local computer zone via the (1) artist or (2) song fields of a music file, if the file is processed using Internet Explorer.

CWE

NVD-CWE-Other

Affected Products

microsoft windows media player

References