Oval Definition:oval:org.mitre.oval:def:28910
Revision Date:2015-07-27Version:45
Title:Windows Media Player RCE via DataObject vulnerability - CVE-2015-1728 (MS15-057)
Description:Microsoft Windows Media Player 10 through 12 allows remote attackers to execute arbitrary code via a crafted DataObject on a web site, aka "Windows Media Player RCE via DataObject Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2015-1728
Platform(s):Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Product(s):Windows Media Player
Definition Synopsis
  • Windows Media Player 9
  • Windows Media Player v9 is installed.
  • AND the version of Wmp.dll is less than 9.0.0.4513
  • OR Windows Media Player 10 on windows server 2003 x86
  • Microsoft Windows Server 2003 (32-bit) is installed
  • AND Windows Media Player v10 is installed.
  • AND the version of Wmp.dll is less than 10.0.0.4011
  • OR Windows Media Player 11 on Windows Vista /Server 2008 (32-bit)/(64-bit)/ia64
  • Vista x86/x64, Server 2008 x86/x64
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • OR Microsoft Windows Server 2008 (32-bit) is installed
  • OR Microsoft Windows Server 2008 (64-bit) is installed
  • AND Windows Media Player v11 is installed.
  • AND GDR or LDR Service branch
  • the version of Wmp.dll is less than 11.0.6002.19378
  • OR LDR
  • the version of Wmp.dll is greater than or equal 11.0.6002.22000
  • AND the version of Wmp.dll is less than 11.0.6002.23684
  • OR Windows Media Player 12 on Microsoft Windows 7 x86/x64, Windows Server 2008 R2 x64/ia64
  • 7 x86/x64, Server 2008 R2 x64
  • Microsoft Windows 7 (32-bit) is installed
  • OR Microsoft Windows 7 x64 Edition is installed
  • OR Microsoft Windows Server 2008 R2 x64 Edition is installed
  • AND Windows Media Player v12 is installed.
  • AND GDR or LDR Service branch
  • The version of Wmp.dll is less than 12.0.7601.18840
  • OR LDR
  • The version of Wmp.dll is greater than or equal 12.0.7601.22000
  • AND The version of Wmp.dll is less than 12.0.7601.23041
  • OR Windows Media Player 10 on Windows Server 2003 (x64-bit)
  • Microsoft Windows Server 2003 (x64) is installed
  • AND Windows Media Player v10 is installed.
  • AND the version of Wwmp.dll is less than 10.0.0.4011
  • BACK