Vulnerability index

Browse CVEs

57 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Winamp HIGH 7.6
CVE-2006-0720EPSS 11%

Stack-based buffer overflow in Nullsoft Winamp 5.12 and 5.13 allows user-assisted attackers to cause a denial of service (crash) and possibly execute…

Patch available
Fix from $1,950 2006-02-23
Winamp HIGH 9.3
CVE-2006-0708EPSS 7%

Multiple buffer overflows in NullSoft Winamp 5.13 and earlier allow remote attackers to execute arbitrary code via (1) an m3u file containing a long …

No fix yet
Fix from $1,950 2006-02-15
Winamp HIGH 7.6
CVE-2006-0476EPSS 75%

Buffer overflow in Nullsoft Winamp 5.12 allows remote attackers to execute arbitrary code via a playlist (pls) file with a long file name (File1 fiel…

Patch available
Fix from $1,950 2006-01-31
Winamp HIGH 7.6
CVE-2005-3188EPSS 7%

Buffer overflow in Nullsoft Winamp 5.094 allows remote attackers to execute arbitrary code via (1) an m3u file containing a long line ending in .wma …

Patch available
Fix from $1,950 2005-12-31
Winamp HIGH 9.3
CVE-2005-2310EPSS 13%

Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file w…

Fix: after 5.093
Fix from $1,950 2005-07-19
Winamp HIGH 10.0
CVE-2004-1119EPSS 17%

Stack-based buffer overflow in IN_CDDA.dll in Winamp 5.05, and possibly other versions including 5.06, allows remote attackers to execute arbitrary c…

Patch available
Fix from $1,950 2005-01-10
Winamp HIGH 7.6
CVE-2004-1896EPSS 5%

Heap-based buffer overflow in in_mod.dll in Nullsoft Winamp 2.91 through 5.02 allows remote attackers to execute arbitrary code via a Fasttracker 2 (…

Patch available
Fix from $1,950 2004-12-31
Winamp MEDIUM 5.1
CVE-2004-1150EPSS 9%

Stack-based buffer overflow in the in_cdda.dll plugin for Winamp 5.0 through 5.08c allows attackers to execute arbitrary code via a cda:// URL with a…

No fix yet
Fix from $1,600 2004-12-31
Winamp MEDIUM 5.0
CVE-2004-2384

NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's …

Patch available
Fix from $1,600 2004-12-31
Shoutcast Server HIGH 7.5
CVE-2004-1373EPSS 70%

Format string vulnerability in SHOUTcast 1.9.4 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code vi…

Patch available
Fix from $1,950 2004-12-23
Winamp HIGH 9.3
CVE-2003-1272

Multiple buffer overflows in Winamp 3.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a .b4s fi…

Mitigation only
Fix from $1,950 2003-12-31
Winamp MEDIUM 5.0
CVE-2003-1274

Winamp 3.0 allows remote attackers to cause a denial of service (crash) via .b4s file with a file: argument to the Playstring parameter that contains…

Mitigation only
Fix from $1,600 2003-12-31
Winamp HIGH 7.5
CVE-2003-0765EPSS 7%

The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Trac…

Mitigation only
Fix from $1,950 2003-09-17
Winamp HIGH 7.5
CVE-2002-1524

Buffer overflow in XML parser in wsabi.dll of Winamp 3 (1.0.0.488) allows remote attackers to execute arbitrary code via a skin file (.wal) with a lo…

No fix yet
Fix from $1,950 2003-04-02
Winamp MEDIUM 6.4
CVE-2002-2392

Winamp 2.65 through 3.0 stores skin files in a predictable file location, which allows remote attackers to execute arbitrary code via a URL reference…

No fix yet
Fix from $1,600 2002-12-31
Winamp MEDIUM 5.0
CVE-2002-2195

Buffer overflow in the version update check for Winamp 2.80 and earlier allows remote attackers who can spoof www.winamp.com to execute arbitrary cod…

Patch available
Fix from $1,600 2002-12-31
Winamp HIGH 7.5
CVE-2002-1176

Buffer overflow in Winamp 2.81 allows remote attackers to execute arbitrary code via a long Artist ID3v2 tag in an MP3 file.

Mitigation only
Fix from $1,950 2002-12-26
Winamp HIGH 7.5
CVE-2002-1177

Multiple buffer overflows in Winamp 3.0, when displaying an MP3 in the Media Library window, allows remote attackers to execute arbitrary code via an…

Mitigation only
Fix from $1,950 2002-12-26
Shoutcast Server HIGH 7.5
CVE-2002-0907EPSS 6%

Buffer overflow in SHOUTcast 1.8.9 and other versions before 1.8.12 allows a remote authenticated DJ to execute arbitrary code on the server via a lo…

Patch available
Fix from $1,950 2002-10-04
Winamp HIGH 7.5
CVE-2002-0546

Cross-site scripting vulnerability in the mini-browser for Winamp 2.78 and 2.79 allows remote attackers to execute script via an ID3v1 or ID3v2 tag i…

No fix yet
Fix from $1,950 2002-07-03
Winamp HIGH 7.5
CVE-2002-0547

Buffer overflow in the mini-browser for Winamp 2.79 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arb…

Fix: after 2.79
Fix from $1,950 2002-07-03
Shoutcast Server HIGH 7.5
CVE-2002-0199

Buffer overflow in admin.cgi for Nullsoft Shoutcast Server 1.8.3 allows remote attackers to cause a denial of service and possibly execute arbitrary …

Mitigation only
Fix from $1,950 2002-05-16
Shoutcast Server MEDIUM 5.0
CVE-2001-1304

Buffer overflow in SHOUTcast Server 1.8.2 allows remote attackers to cause a denial of service (crash) via several HTTP requests with a long (1) user…

Mitigation only
Fix from $1,600 2001-08-03
Winamp HIGH 7.5
CVE-2001-0490

Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.

Patch available
Fix from $1,950 2001-06-27
Winamp HIGH 7.5
CVE-2000-0624

Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: extension in the M3U playlist.

Fix: after 2.64
Fix from $1,950 2000-07-20
Winamp HIGH 7.2
CVE-2000-0049

Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file.

Mitigation only
Fix from $1,950 2000-01-04
Shoutcast Server HIGH 7.2
CVE-1999-1561

Nullsoft SHOUTcast server stores the administrative password in plaintext in a configuration file (sc_serv.conf), which could allow a local user to g…

Patch available
Fix from $1,950 1999-08-20