CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22618  CVE-2006-6514  Candidate  Winamp Web Interface (Wawi) 7.5.13 and earlier uses an insufficient comparison to determine whether a directory is located below the application"s root directory, which allows remote authenticated users to access certain other directories if the name of the root directory is a substring of the name of the target directory, as demonstrated by accessing C:folder2 when the root directory is C:folder.  Assigned (20061213)  None (candidate not yet proposed)    View
9248  CVE-2004-0820  Candidate  Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.  Assigned (20040826)  None (candidate not yet proposed)    View
70738  CVE-2014-3442  Candidate  Winamp 5.666 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) via a malformed .FLV file, related to f263.w5s.  Assigned (20140509)  None (candidate not yet proposed)    View
27749  CVE-2007-4392  Candidate  Winamp 5.35 allows remote attackers to cause a denial of service (program stack overflow and application crash) via an M3U file that recursively includes itself.  Assigned (20070817)  None (candidate not yet proposed)    View
9824  CVE-2004-1396  Candidate  Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data or (2) an invalid .nsv or .nsa file.  Assigned (20050212)  None (candidate not yet proposed)    View

Page 192 of 20943, showing 5 records out of 104715 total, starting on record 956, ending on 960

Actions