Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2026-42171
NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing local attack…
Nullsoft Scriptable Install System
3.12+
MEDIUM 5.3
CVE-2023-37378
Nullsoft Scriptable Install System (NSIS) before 3.09 mishandles access control for an uninstaller directory.
Nullsoft Scriptable Install System
after 3.09
HIGH 7.5
CVE-2013-4694EPSS 17%
Stack-based buffer overflow in gen_jumpex.dll in Winamp before 5.64 Build 3418 allows remote attackers to cause a denial of service (crash) and possi…
Winamp
after 5.63
HIGH 7.5
CVE-2012-4045
Multiple heap-based buffer overflows in bmp.w5s in Winamp before 5.63 build 3235 allow remote attackers to execute arbitrary code via the (1) strf ch…
Winamp
after 5.63
MEDIUM 6.8
CVE-2012-3889
The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other i…
Winamp
after 5.623
MEDIUM 6.8
CVE-2012-3890
The in_mod plugin in Winamp before 5.63 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified ot…
Winamp
after 5.623
HIGH 10.0
CVE-2011-4857
Heap-based buffer overflow in the in_mod.dll plugin in Winamp before 5.623 allows remote attackers to execute arbitrary code via crafted song message…
Winamp
after 5.622
HIGH 9.3
CVE-2011-3834EPSS 5%
Multiple integer overflows in the in_avi.dll plugin in Winamp before 5.623 allow remote attackers to execute arbitrary code via an AVI file with a cr…
Winamp
after 5.622
HIGH 9.3
CVE-2010-4372
Integer overflow in the in_nsv plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to improper allo…
Winamp
after 5.581
HIGH 9.3
CVE-2010-4370EPSS 5%
Multiple integer overflows in the in_midi plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted MIDI file that t…
Winamp
after 5.581
HIGH 9.3
CVE-2010-4371EPSS 6%
Buffer overflow in the in_mod plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to the comment bo…
Winamp
after 5.581
HIGH 9.3
CVE-2010-2586EPSS 6%
Multiple integer overflows in in_nsv.dll in the in_nsv plugin in Winamp before 5.6 allow remote attackers to execute arbitrary code via a crafted Tab…
Winamp
after 5.581
HIGH 9.3
CVE-2010-1523EPSS 5%
Multiple heap-based buffer overflows in vp6.w5s (aka the VP6 codec) in Winamp before 5.59 Beta build 3033 might allow remote attackers to execute arb…
Winamp
after 5.581
HIGH 9.3
CVE-2010-3137EPSS 8%
Untrusted search path vulnerability in Nullsoft Winamp 5.581, and probably other versions, allows local users, and possibly remote attackers, to exec…
Winamp
No fix yet
HIGH 9.3
CVE-2009-3996EPSS 6%
Heap-based buffer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp before 5.57, and libmikmod 3.1.12, might allow remote attackers t…
Winamp
after 5.56
HIGH 9.3
CVE-2009-4356
Multiple integer overflows in the jpeg.w5s and png.w5s filters in Winamp before 5.57 allow remote attackers to execute arbitrary code via malformed (…
Winamp
after 5.56
HIGH 9.3
CVE-2009-3995EPSS 7%
Multiple heap-based buffer overflows in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp before 5.57, and libmikmod 3.1.12, might allow remote a…
Winamp
after 5.56
HIGH 9.3
CVE-2009-3997EPSS 6%
Integer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp before 5.57 might allow remote attackers to execute arbitrary code via an O…
Winamp
after 5.56
HIGH 9.3
CVE-2009-1831EPSS 36%
The Nullsoft Modern Skins Support module (gen_ff.dll) in Nullsoft Winamp before 5.552 allows remote attackers to execute arbitrary code via a crafted…
Winamp
after 5.55
HIGH 9.3
CVE-2009-0186
Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted…
Winamp
after 1.0.18
HIGH 10.0
CVE-2009-0263EPSS 17%
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1)…
Winamp
after 5.541
HIGH 7.5
CVE-2008-3441
Nullsoft Winamp before 5.24 does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code …
Winamp
5.24+
HIGH 9.3
CVE-2007-2498EPSS 10%
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of thes…
Winamp
No fix yet
HIGH 7.1
CVE-2007-2180
Buffer overflow in Nullsoft Winamp 5.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted WMV file.
Winamp
No fix yet
HIGH 9.3
CVE-2007-1921
LIBSNDFILE.DLL, as used by AOL Nullsoft Winamp 5.33 and possibly other products, allows remote attackers to execute arbitrary code via a crafted .MAT…
Winamp
Mitigation only
HIGH 9.3
CVE-2007-1922
The Impulse Tracker (IT) and ScreamTracker 3 (S3M) modules in IN_MOD.DLL in AOL Nullsoft Winamp 5.33 allows remote attackers to execute arbitrary cod…
Winamp
Patch available
HIGH 9.3
CVE-2006-5567EPSS 14%
Multiple heap-based buffer overflows in AOL Nullsoft WinAmp before 5.31 allow user-assisted remote attackers to execute arbitrary code via a crafted …
Winamp
Patch available
HIGH 7.8
CVE-2006-3534
Directory traversal vulnerability in Nullsoft SHOUTcast DSP before 1.9.6 filters directory traversal sequences before decoding, which allows remote a…
Shoutcast Server
after 1.9.5
MEDIUM 5.0
CVE-2006-3535
Directory traversal vulnerability in Nullsoft SHOUTcast DSP before 1.9.7 allows remote attackers to read arbitrary files via unspecified vectors that…
Shoutcast Dsp
Patch available
HIGH 9.3
CVE-2006-3228EPSS 12%
Buffer overflow in in_midi.dll for WinAmp 2.90 up to 5.23, including 5.21, allows remote attackers to execute arbitrary code via a crafted .mid (MIDI…
Winamp
after 5.23