CVE-2016-0185

HIGH KEV

Microsoft Windows 7 - Remote Code Execution

Title source: rule

Description

Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, and Windows 8.1 allows remote attackers to execute arbitrary code via a crafted Media Center link (aka .mcl) file, aka "Windows Media Center Remote Code Execution Vulnerability."

Exploits (1)

exploitdb WORKING POC VERIFIED
by Eduardo Braun Prado · textremotewindows
https://www.exploit-db.com/exploits/39805

Scores

CVSS v3 7.8
EPSS 0.8024
EPSS Percentile 99.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CISA KEV 2021-11-03
VulnCheck KEV 2021-11-03
InTheWild.io 2021-07-23
ENISA EUVD EUVD-2016-0223
Status published
Products (3)
microsoft/windows_7
microsoft/windows_8.1
microsoft/windows_vista
Published May 11, 2016
KEV Added Nov 03, 2021
Tracked Since Feb 18, 2026