Show filters
75 Total Results
Displaying 51-60 of 75
Sort by:
Attacker Value
Unknown
CVE-2004-2384
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the command line.
0
Attacker Value
Unknown
CVE-2004-1373
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via format string specifiers in a content URL, as demonstrated in the filename portion of a .mp3 file.
0
Attacker Value
Unknown
CVE-2004-0820
Disclosure Date: August 28, 2004 (last updated February 22, 2025)
Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.
0
Attacker Value
Unknown
CVE-2003-1273
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Winamp 3.0 allows remote attackers to cause a denial of service (crash) via a .b4s file with a playlist name that contains some non-English characters, e.g. Cyrillic characters.
0
Attacker Value
Unknown
CVE-2003-1272
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Multiple buffer overflows in Winamp 3.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a .b4s file containing (1) a long playlist name or (2) a long path in a file: argument to the Playstring parameter.
0
Attacker Value
Unknown
CVE-2003-1174
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Buffer overflow in NullSoft Shoutcast Server 1.9.2 allows local users to cause a denial of service via (1) icy-name followed by a long server name or (2) icy-url followed by a long URL.
0
Attacker Value
Unknown
CVE-2003-1274
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Winamp 3.0 allows remote attackers to cause a denial of service (crash) via .b4s file with a file: argument to the Playstring parameter that contains MS-DOS device names such as aux.
0
Attacker Value
Unknown
CVE-2003-0765
Disclosure Date: September 17, 2003 (last updated February 22, 2025)
The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Track data size" value.
0
Attacker Value
Unknown
CVE-2002-1470
Disclosure Date: April 22, 2003 (last updated February 22, 2025)
SHOUTcast 1.8.9 and earlier allows local users to obtain the cleartext administrative password via a GET request to port 8001, which causes the password to be logged in the world-readable sc_serv.log file.
0
Attacker Value
Unknown
CVE-2002-1524
Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Buffer overflow in XML parser in wsabi.dll of Winamp 3 (1.0.0.488) allows remote attackers to execute arbitrary code via a skin file (.wal) with a long include file tag.
0