NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81343 | CVE-2002-2392 | Winamp 2.65 through 3.0 stores skin files in a predictable file location, which allows remote attackers to execute arbitrary code via a URL reference to (1) wsz and (2) wal files that contain embedded code. | 2 | 6.4 | Medium | 2017-01-05 | 2008-09-05 | View | |
79294 | CVE-2002-0284 | Winamp 2.78 and 2.77, when opening a wma file that requires a license, sends the full path of the Temporary Internet Files directory to the web page that is processing the license, which could allow malicious web servers to obtain the pathname. | 2 | 2.6 | Low | 2017-01-05 | 2016-10-17 | View | |
81363 | CVE-2002-2412 | Winamp 2.80 stores authentication credentials in plaintext in the (1) [HTTP-AUTH] and (2) [winamp] sections in winamp.ini, which allows local users to gain access to other accounts. | 2 | 2.1 | Low | 2017-01-05 | 2008-09-05 | View | |
74344 | CVE-2003-1274 | Winamp 3.0 allows remote attackers to cause a denial of service (crash) via .b4s file with a file: argument to the Playstring parameter that contains MS-DOS device names such as aux. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74343 | CVE-2003-1273 | Winamp 3.0 allows remote attackers to cause a denial of service (crash) via a .b4s file with a playlist name that contains some non-English characters, e.g. Cyrillic characters. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View |
Page 17452 of 17672, showing 5 records out of 88360 total, starting on record 87256, ending on 87260