HTTP: Microsoft Windows Media Player CVE-2016-0101 Remote Code Execution

This signature detects attempts to exploit a known vulnerability against Windows Media Player. A successful attack can lead to remote code execution

Extended Description

Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow remote attackers to execute arbitrary code via crafted media content, aka "Windows Media Parsing Remote Code Execution Vulnerability."

Affected Products

Microsoft windows_8.1

References

CVE: CVE-2016-0101

Short Name
HTTP:STC:DL:CVE-2016-0101-RCE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2016-0101 Code Execution Media Microsoft Player Remote Windows
Release Date
03/08/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3726
False Positive
Unknown
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?