CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
22618 | CVE-2006-6514 | Candidate | Winamp Web Interface (Wawi) 7.5.13 and earlier uses an insufficient comparison to determine whether a directory is located below the application"s root directory, which allows remote authenticated users to access certain other directories if the name of the root directory is a substring of the name of the target directory, as demonstrated by accessing C:folder2 when the root directory is C:folder. | Assigned (20061213) | None (candidate not yet proposed) | View | |
9248 | CVE-2004-0820 | Candidate | Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file. | Assigned (20040826) | None (candidate not yet proposed) | View | |
70738 | CVE-2014-3442 | Candidate | Winamp 5.666 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) via a malformed .FLV file, related to f263.w5s. | Assigned (20140509) | None (candidate not yet proposed) | View | |
27749 | CVE-2007-4392 | Candidate | Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself. | Assigned (20070817) | None (candidate not yet proposed) | View | |
9824 | CVE-2004-1396 | Candidate | Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file. | Assigned (20050212) | None (candidate not yet proposed) | View |
Page 192 of 20943, showing 5 records out of 104715 total, starting on record 956, ending on 960