Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3023▼ 71 respecto a la semana anterior
Críticas / altas1419▲ 54 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (9.3) | 22% | — | Microsoft Windows Media Format RuntimeMicrosoft Windows Media Player | 10/7/2013 | 16/6/2026 | The Microsoft WMV video codec in wmv9vcm.dll, wmvdmod.dll in Windows Media Format Runtime 9 and 9.5, and wmvdecod.dll in Windows Media Format Runtime 11 and Windows Media Player 11 and 12 allows remote attackers to execute arbitrary code via a crafted media file, aka "WMV Video Decoder Remote Code Execution… | |
| Modificada | Alta (9.3) | 20% | — | Microsoft DirectxMicrosoft Windows Media Format RuntimeMicrosoft Windows Media Encoder | 8/6/2010 | 16/6/2026 | Unspecified vulnerability in Quartz.dll for DirectShow; Windows Media Format Runtime 9, 9.5, and 11; Media Encoder 9; and the Asycfilt.dll COM component allows remote attackers to execute arbitrary code via a media file with crafted compression data, aka "Media Decompression Vulnerability." | |
| Modificada | Alta (9.3) | 23% | — | Microsoft Windows 2000Microsoft Windows Media Format RuntimeMicrosoft Windows Media PlayerMicrosoft Windows XP+3 | 14/10/2009 | 16/6/2026 | Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACM), does not properly initialize unspecified functions within compressed audio files, which allows remote attackers to execute arbitrary code via (1) a crafted media file or (2)… | |
| Modificada | Alta (9.3) | 27% | — | Microsoft Windows 2000Microsoft Windows Media Format RuntimeMicrosoft Windows Media PlayerMicrosoft Windows XP+3 | 14/10/2009 | 16/6/2026 | Microsoft Windows Media Runtime, as used in DirectShow WMA Voice Codec, Windows Media Audio Voice Decoder, and Audio Compression Manager (ACM), does not properly process Advanced Systems Format (ASF) files, which allows remote attackers to execute arbitrary code via a crafted audio file that uses the Windows Media… | |
| Modificada | Alta (8.5) | 16% | — | Microsoft Windows Media Format RuntimeMicrosoft Windows 2000Microsoft Windows XPMicrosoft Windows Server 2003+4 | 8/9/2009 | 16/6/2026 | Microsoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows remote attackers to execute arbitrary code via an MP3 file with crafted metadata that triggers memory corruption, aka "Windows Media Playback Memory Corruption… | |
| Modificada | Alta (9.3) | 21% | — | Microsoft Windows Media Format RuntimeMicrosoft Windows 2000Microsoft Windows XPMicrosoft Windows Server 2003+4 | 8/9/2009 | 16/6/2026 | Microsoft Windows Media Format Runtime 9.0, 9.5, and 11 and Windows Media Services 9.1 and 2008 do not properly parse malformed headers in Advanced Systems Format (ASF) files, which allows remote attackers to execute arbitrary code via a crafted (1) .asf, (2) .wmv, or (3) .wma file, aka "Windows Media Header Parsing… | |
| Modificada | Alta (10) | 16% | — | Microsoft Windows Media PlayerMicrosoft Windows Media Format RuntimeMicrosoft Windows Media Services | 10/12/2008 | 16/6/2026 | Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the Service Principal Name (SPN) identifier when validating replies to authentication requests, which allows remote servers to execute arbitrary code via vectors that employ… | |
| Modificada | Alta (9.3) | 36% | — | Microsoft Windows Media Format RuntimeMicrosoft Windows Media Services | 12/12/2007 | 16/6/2026 | Heap-based buffer overflow in Windows Media Format Runtime 7.1, 9, 9.5, 9.5 x64 Edition, 11, and Windows Media Services 9.1 for Microsoft Windows 2000, XP, Server 2003, and Vista allows user-assisted remote attackers to execute arbitrary code via a crafted Advanced Systems Format (ASF) file. |