Microsoft Windows Media Player 9 allows for writing to audio files from Internet Explorer, which may allow for code execution in a trusted zone. It also suffers from a file existence determination flaw.
417ed1ab5f95ea5851bcda7df494d55eAdobe Acrobat versions 4 and 5 suffer from a denial of service vulnerability when too much memory gets allocated during file repair.
5cb310317d967eb92536f1e941310e34Microsoft Outlook Express 6.0 crashes when it attempts to open an EML file that contains a Sender: tag but does not have a From: tag.
2f97562ecf7f6ceef49e3f906fdfafb6Microsoft Internet Explorer versions 5.0 to 6.0 allocate memory for BMP files without verifying the actual size of them, allowing memory resources to be easily maxed, resulting in a denial of service.
8d7a26077c41253690a6dc0b3d57e57aRealNetworks fails to address a Cross-Site Scripting vulnerability in RealOne Player.
5d2034db3aa68a7f7754c8edf0e18fedExploit code that makes use of the showHelp() vulnerability found in Microsoft Explorer versions 5.x-6.0. This file must be renamed with a .html extension to work.
e99fb54eb1ced09dc1fd2e3187b715cbA flaw exists in Microsoft Internet Explorer 5.x-6.0 that allows a remote attacker to execute a file using chm in showHelp().
db3591cd11cf5acd1b4f20246b92e736