CVE Database · CVE-2006-0005
CVSS v3.1
N/A
EPSS
38.91%
Published
Feb 14, 2006
Modified
Apr 15, 2026
Public PoC / Exploit (3)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute.
Weaknesses (CWE)
Affected Products (45)
References (20)