3.5
CVSSv2

CVE-2006-6513

Published: 14/12/2006 Updated: 17/10/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

The CControl::Download function (/dl URI) in Winamp Web Interface (Wawi) 7.5.13 and previous versions allows remote authenticated users to download arbitrary file types under the root via a trailing "." (dot) in a filename in the file parameter, related to erroneous behavior of the IsWinampFile function.

Vulnerable Product Search on Vulmon Subscribe to Product

flippet.org winamp web interface

flippet.org winamp web interface 7.5.11

flippet.org winamp web interface 7.5.9