Microsoft Windows Media Center Remote Code Execution Vulnerability (CVE-2015-2509)
Publish date: 06 de abril de 2016
Gravedad: Crítico
Identificadores de CVE : CVE-2015-2509
Fecha recomendada: 09 de septiembre de 2015
Descripción
A vulnerability exists in Windows Media Center that could allow remote code execution if Windows Media Center opens a specially crafted Media Center link (.mcl) file that references malicious code. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user.
Trend Micro researchers Aaron Luo, Kenney Lu, and Ziv Chang discovered this zero-day exploit, which also emerged from the Hacking Team leak.
Revelación de la información
Apply associated Trend Micro DPI Rules.