漏洞描述 Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。Windows Media Player是系统的多媒体播放组件。 WMP在处理畸形结构的MIDI数据时存在内存破坏漏洞。远程攻击者可利用该漏洞通过诱使用户访问恶意网页控制用户系统。
相关漏洞推荐 POC wp-enable-media-replace-log: WordPress Plugin Enable Media Replace - Log File Exposure (CVE-2023-53875)GOM Player远程代码执行漏洞 (CVE-2023-53874)GOM Player均衡器预设名称输入字段缓冲区溢出漏洞 POC sharepoint-lists-api-disclosure: Microsoft SharePoint - List API Disclosure POC CVE-2020-11732: Media Library Assistant < 2.82 - Unauthenticated Limited Local File Inclusion POC CVE-2025-13315: Twonky Server 8.5.2 on Linux and Windows - Log File Exposure POC sharepoint-layouts-disclosure: Microsoft SharePoint - Layouts Disclosure POC sharepoint-masterpage-disclosure: Microsoft SharePoint - Master Page Disclosure POC sharepoint-site-metadata-disclosure: Microsoft SharePoint - Site Metadata Disclosure POC sharepoint-sitepages-disclosure: Microsoft SharePoint - Site Pages Disclosure POC CVE-2025-49706: Microsoft SharePoint Server - Authentication Bypass Windows PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710) Windows 11 PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710)