CVE detail
CVE-2003-0726 — CVE-2003-0726
Published 2003-10-20 · Modified 2026-06-16 · Vendor realnetworks · Product realone_desktop_manager · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0683
EPSS probability
exploitation probability, 30d
93.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
RealOne player allows remote attackers to execute arbitrary script in the "My Computer" zone via a SMIL presentation with a URL that references a scripting protocol, which is executed in the security context of the previously loaded URL, as demonstrated using a "javascript:" URL in the area tag.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References