Show filters
75 Total Results
Displaying 31-40 of 75
Sort by:
Attacker Value
Unknown

CVE-2007-4392

Disclosure Date: August 17, 2007 (last updated October 04, 2023)
Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.
0
Attacker Value
Unknown

CVE-2007-2498

Disclosure Date: May 04, 2007 (last updated October 04, 2023)
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2007-2180

Disclosure Date: April 24, 2007 (last updated October 04, 2023)
Buffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.
0
Attacker Value
Unknown

CVE-2007-1922

Disclosure Date: April 10, 2007 (last updated October 04, 2023)
The Impulse Tracker (IT) and ScreamTracker 3 (S3M) modules in IN_MOD.DLL in AOL Nullsoft Winamp 5.33 allows remote attackers to execute arbitrary code via a crafted (1) .IT or (2) .S3M file containing integer values that are used as memory offsets, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-1921

Disclosure Date: April 10, 2007 (last updated October 04, 2023)
LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT file that contains a value that is used as an offset, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-1229

Disclosure Date: March 02, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Nullsoft ShoutcastServer 1.9.7 allows remote attackers to inject arbitrary web script or HTML via the top-level URI on the Incoming interface (port 8001/tcp), which is not properly handled in the administrator interface when viewing the log file.
0
Attacker Value
Unknown

CVE-2006-5567

Disclosure Date: October 27, 2006 (last updated October 04, 2023)
Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted (1) ultravox-max-msg header to the Ultravox protocol handler or (2) unspecified Lyrics3 tags.
0
Attacker Value
Unknown

CVE-2006-3535

Disclosure Date: July 12, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in Nullsoft SHOUTcast DSP before 1.9.7 allows remote attackers to read arbitrary files via unspecified vectors that are a "slight variation" of CVE-2006-3534.
0
Attacker Value
Unknown

CVE-2006-3534

Disclosure Date: July 12, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in Nullsoft SHOUTcast DSP before 1.9.6 filters directory traversal sequences before decoding, which allows remote attackers to read arbitrary files via encoded dot dot (%2E%2E) sequences in an HTTP GET request for a file path containing "/content".
0
Attacker Value
Unknown

CVE-2006-3228

Disclosure Date: June 26, 2006 (last updated October 04, 2023)
Buffer overflow in in_midi.dll for WinAmp 2.90 up to 5.23, including 5.21, allows remote attackers to execute arbitrary code via a crafted .mid (MIDI) file.
0