Windows Media Player represents a legacy media-handling application whose reported vulnerabilities center on improper memory-buffer restrictions, a weakness class typical of native code handling untrusted media streams. Treat this as a focused product profile rather than a broad vendor trend; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Windows over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-4310HIGH Stack-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execut | Dec 13, 2009 | 9.3 | 34 | NO | NO |
CVE-2006-6601MEDIUM Windows Media Player 10.00.00.4036 in Microsoft Windows XP SP2 allows user-assisted remote attackers to cause a denial of service via a .MID (MIDI) file with a malformed header chu | Dec 15, 2006 | 4.3 | 28 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Windows.
Media articles that mention a CVE ID that affects a product developed by Windows — matched by CVE ID, not by vendor name.