Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nullsoft winamp 2.80 vulnerabilities and exploits
(subscribe to this query)
6.4
CVSSv2
CVE-2002-2392
Winamp 2.65 up to and including 3.0 stores skin files in a predictable file location, which allows remote malicious users to execute arbitrary code via a URL reference to (1) wsz and (2) wal files that contain embedded code.
Nullsoft Winamp 2.75
Nullsoft Winamp 2.77
Nullsoft Winamp 2.78
Nullsoft Winamp 2.79
Nullsoft Winamp 2.80
Nullsoft Winamp 3.1
Nullsoft Winamp 2.70
Nullsoft Winamp 2.71
Nullsoft Winamp 2.72
Nullsoft Winamp 2.73
Nullsoft Winamp 2.65
Nullsoft Winamp 2.74
Nullsoft Winamp 2.76
5
CVSSv2
CVE-2002-2195
Buffer overflow in the version update check for Winamp 2.80 and previous versions allows remote attackers who can spoof www.winamp.com to execute arbitrary code via a long server response.
Nullsoft Winamp 2.60
Nullsoft Winamp 2.61
Nullsoft Winamp 2.62
Nullsoft Winamp 2.80
Nullsoft Winamp 2.65
Nullsoft Winamp 2.70
Nullsoft Winamp 2.76
Nullsoft Winamp 2.79
Nullsoft Winamp 2.71
Nullsoft Winamp 2.72
Nullsoft Winamp 2.73
Nullsoft Winamp 2.74
Nullsoft Winamp 2.64
Nullsoft Winamp 2.75
Nullsoft Winamp 2.78
1 EDB exploit
2.1
CVSSv2
CVE-2002-2412
Winamp 2.80 stores authentication credentials in plaintext in the (1) [HTTP-AUTH] and (2) [winamp] sections in winamp.ini, which allows local users to gain access to other accounts.
Nullsoft Winamp 2.80
4.6
CVSSv2
CVE-2004-0820
Winamp prior to 5.0.4 allows remote malicious users to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.
Nullsoft Winamp 2.4
Nullsoft Winamp 2.50
Nullsoft Winamp 2.64
Nullsoft Winamp 2.65
Nullsoft Winamp 2.70
Nullsoft Winamp 2.75
Nullsoft Winamp 2.76
Nullsoft Winamp 3.0
Nullsoft Winamp 3.1
Nullsoft Winamp 2.60
Nullsoft Winamp 2.61
Nullsoft Winamp 2.72
Nullsoft Winamp 2.73
Nullsoft Winamp 2.79
Nullsoft Winamp 2.80
Nullsoft Winamp 5.03
Nullsoft Winamp 5.04
Nullsoft Winamp 2.5e
Nullsoft Winamp 2.71
Nullsoft Winamp 2.77
Nullsoft Winamp 2.78
Nullsoft Winamp 5.01
1 EDB exploit
4.3
CVSSv2
CVE-2008-3567
Cross-zone scripting vulnerability in the NowPlaying functionality in NullSoft Winamp prior to 5.541 allows remote malicious users to conduct cross-site scripting (XSS) attacks via an MP3 file with JavaScript in id3 tags.
Nullsoft Winamp 2.50
Nullsoft Winamp 2.5e
Nullsoft Winamp 2.70
Nullsoft Winamp 2.71
Nullsoft Winamp 2.78
Nullsoft Winamp 2.79
Nullsoft Winamp 3.1
Nullsoft Winamp 5.0
Nullsoft Winamp 5.04
Nullsoft Winamp 5.05
Nullsoft Winamp 5.09
Nullsoft Winamp 5.091
Nullsoft Winamp 5.13
Nullsoft Winamp 5.2
Nullsoft Winamp 5.32
Nullsoft Winamp 5.33
Nullsoft Winamp 5.53
Nullsoft Winamp
Nullsoft Winamp 2.0
Nullsoft Winamp 2.62
Nullsoft Winamp 2.64
Nullsoft Winamp 2.74
9.3
CVSSv2
CVE-2009-1831
The Nullsoft Modern Skins Support module (gen_ff.dll) in Nullsoft Winamp prior to 5.552 allows remote malicious users to execute arbitrary code via a crafted MAKI file, which triggers an incorrect sign extension, an integer overflow, and a stack-based buffer overflow.
Nullsoft Winamp 5.09
Nullsoft Winamp 5.08e
Nullsoft Winamp 5.03a
Nullsoft Winamp 5.03
Nullsoft Winamp 2.95
Nullsoft Winamp 3.0
Nullsoft Winamp 2.78
Nullsoft Winamp 2.75
Nullsoft Winamp 2.65
Nullsoft Winamp 2.64
Nullsoft Winamp 2.10
Nullsoft Winamp 2.50
Nullsoft Winamp 2.4
Nullsoft Winamp 5.52
Nullsoft Winamp 5.35
Nullsoft Winamp 5.08
Nullsoft Winamp 5.093
Nullsoft Winamp 5.091
Nullsoft Winamp 5.22
Nullsoft Winamp 5.21
Nullsoft Winamp 5.07
Nullsoft Winamp 5.06
5 EDB exploits
10
CVSSv2
CVE-2009-0263
Multiple buffer overflows in Winamp 5.541 and previous versions allow remote malicious users to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AIFF file and (2) a large invalid value in an MP3 file.
Nullsoft Winamp 2.24
Nullsoft Winamp 2.10
Nullsoft Winamp 2.62
Nullsoft Winamp 2.64
Nullsoft Winamp 5.0
Nullsoft Winamp 3.1
Nullsoft Winamp 2.73
Nullsoft Winamp 2.91
Nullsoft Winamp 2.75
Nullsoft Winamp 2.76
Nullsoft Winamp 5.08d
Nullsoft Winamp 5.08c
Nullsoft Winamp 5.08
Nullsoft Winamp 5.01
Nullsoft Winamp 5.5
Nullsoft Winamp 5.51
Nullsoft Winamp 5.112
Nullsoft Winamp 5.31
Nullsoft Winamp 5.52
Nullsoft Winamp 5.53
Nullsoft Winamp 2.5e
Nullsoft Winamp 2.60
1 EDB exploit
9.3
CVSSv2
CVE-2009-4356
Multiple integer overflows in the jpeg.w5s and png.w5s filters in Winamp prior to 5.57 allow remote malicious users to execute arbitrary code via malformed (1) JPEG or (2) PNG data in an MP3 file.
Nullsoft Winamp 5.541
Nullsoft Winamp 5.5
Nullsoft Winamp 5.09
Nullsoft Winamp 5.08e
Nullsoft Winamp 5.03
Nullsoft Winamp 5.02
Nullsoft Winamp 3.0
Nullsoft Winamp 2.90
Nullsoft Winamp 2.78
Nullsoft Winamp 5.552
Nullsoft Winamp 5.53
Nullsoft Winamp 5.07
Nullsoft Winamp 5.06
Nullsoft Winamp 5.0.2
Nullsoft Winamp 5.0.1
Nullsoft Winamp 5.0
Nullsoft Winamp 2.81
Nullsoft Winamp 2.79
Nullsoft Winamp 2.74
Nullsoft Winamp 2.71
Nullsoft Winamp 2.60
Nullsoft Winamp 2.5e
9.3
CVSSv2
CVE-2009-3995
Multiple heap-based buffer overflows in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp prior to 5.57, and libmikmod 3.1.12, might allow remote malicious users to execute arbitrary code via (1) crafted samples or (2) crafted instrument definitions in an Impulse Tracker file...
Nullsoft Winamp 5.551
Nullsoft Winamp 5.531
Nullsoft Winamp 5.51
Nullsoft Winamp 5.55
Nullsoft Winamp 5.08d
Nullsoft Winamp 5.08c
Nullsoft Winamp 5.01
Nullsoft Winamp 2.80
Nullsoft Winamp 2.91
Nullsoft Winamp 2.73
Nullsoft Winamp 2.76
Nullsoft Winamp 2.60
Nullsoft Winamp 2.6x
Nullsoft Winamp 2.0
Nullsoft Winamp 2.62
Nullsoft Winamp 2.64
Nullsoft Winamp 2.92
Nullsoft Winamp 2.9
Nullsoft Winamp 5.1
Nullsoft Winamp 5.08
Nullsoft Winamp 5.093
Nullsoft Winamp 5.091
9.3
CVSSv2
CVE-2009-3996
Heap-based buffer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp prior to 5.57, and libmikmod 3.1.12, might allow remote malicious users to execute arbitrary code via an Ultratracker file.
Nullsoft Winamp 5.551
Nullsoft Winamp 5.531
Nullsoft Winamp 5.51
Nullsoft Winamp 5.55
Nullsoft Winamp 5.07
Nullsoft Winamp 5.08c
Nullsoft Winamp 5.0.2
Nullsoft Winamp 5.01
Nullsoft Winamp 2.80
Nullsoft Winamp 2.73
Nullsoft Winamp 2.74
Nullsoft Winamp 2.60
Nullsoft Winamp 2.6x
Nullsoft Winamp 2.0
Nullsoft Winamp 2.64
Nullsoft Winamp 2.70
Nullsoft Winamp 2.9
Nullsoft Winamp 5.1
Nullsoft Winamp 5.08
Nullsoft Winamp 5.091
Nullsoft Winamp 5.21
Nullsoft Winamp 5.24
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-17519
open redirect
CVE-2024-21683
cache poisoning
CVE-2021-47524
CVE-2021-47521
CVE-2024-5229
CVE-2021-47560
local
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »