Show filters
75 Total Results
Displaying 51-60 of 75
Sort by:
Attacker Value
Unknown

CVE-2004-2384

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the command line.
0
Attacker Value
Unknown

CVE-2004-1373

Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as demonstrated in the filename portion of a .mp3 file.
0
Attacker Value
Unknown

CVE-2004-0820

Disclosure Date: August 28, 2004 (last updated February 22, 2025)
Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.
0
Attacker Value
Unknown

CVE-2003-1273

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Winamp 3.0 allows remote attackers to cause a denial of service (crash) via a .b4s file with a playlist name that contains some non-English characters, e.g. Cyrillic characters.
0
Attacker Value
Unknown

CVE-2003-1272

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Multiple buffer overflows in Winamp 3.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a .b4s file containing (1) a long playlist name or (2) a long path in a file: argument to the Playstring parameter.
0
Attacker Value
Unknown

CVE-2003-1174

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Buffer overflow in NullSoft Shoutcast Server 1.9.2 allows local users to cause a denial of service via (1) icy-name followed by a long server name or (2) icy-url followed by a long URL.
0
Attacker Value
Unknown

CVE-2003-1274

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Winamp 3.0 allows remote attackers to cause a denial of service (crash) via .b4s file with a file: argument to the Playstring parameter that contains MS-DOS device names such as aux.
0
Attacker Value
Unknown

CVE-2003-0765

Disclosure Date: September 17, 2003 (last updated February 22, 2025)
The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Track data size" value.
0
Attacker Value
Unknown

CVE-2002-1470

Disclosure Date: April 22, 2003 (last updated February 22, 2025)
SHOUTcast 1.8.9 and earlier allows local users to obtain the cleartext administrative password via a GET request to port 8001, which causes the password to be logged in the world-readable sc_serv.log file.
0
Attacker Value
Unknown

CVE-2002-1524

Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Buffer overflow in XML parser in wsabi.dll of Winamp 3 (1.0.0.488) allows remote attackers to execute arbitrary code via a skin file (.wal) with a long include file tag.
0