9.3
CVSSv2

CVE-2010-4371

Published: 02/12/2010 Updated: 19/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 945
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the in_mod plugin in Winamp prior to 5.6 allows remote malicious users to have an unspecified impact via vectors related to the comment box.

Vulnerable Product Search on Vulmon Subscribe to Product

nullsoft winamp 5.08d

nullsoft winamp 5.08c

nullsoft winamp 5.02

nullsoft winamp 5.01

nullsoft winamp 5.55

nullsoft winamp 5.551

nullsoft winamp 5.541

nullsoft winamp 5.5

nullsoft winamp 5.34

nullsoft winamp 5.35

nullsoft winamp 5.31

nullsoft winamp 5.3

nullsoft winamp

nullsoft winamp 5.09

nullsoft winamp 5.08e

nullsoft winamp 0.92

nullsoft winamp 5.03

nullsoft winamp 5.552

nullsoft winamp 2.0

nullsoft winamp 2.10

nullsoft winamp 5.1

nullsoft winamp 2.6

nullsoft winamp 5.112

nullsoft winamp 5.54

nullsoft winamp 5.093

nullsoft winamp 5.091

nullsoft winamp 5.094

nullsoft winamp 5.24

nullsoft winamp 5.23

nullsoft winamp 5.07

nullsoft winamp 5.06

nullsoft winamp 1.006

nullsoft winamp 1.90

nullsoft winamp 5.58

nullsoft winamp 2.95

nullsoft winamp 5.531

nullsoft winamp 5.56

nullsoft winamp 5.51

nullsoft winamp 5.53

nullsoft winamp 5.12

nullsoft winamp 5.11

nullsoft winamp 5.33

nullsoft winamp 5.32

nullsoft winamp 5.05

nullsoft winamp 5.04

nullsoft winamp 0.20a

nullsoft winamp 5.0

nullsoft winamp 5.572

nullsoft winamp 2.91

nullsoft winamp 2.92

nullsoft winamp 2.9

nullsoft winamp 5.52

nullsoft winamp 5.111

nullsoft winamp 5.2

nullsoft winamp 5.13

nullsoft winamp 5.22

nullsoft winamp 5.21

Exploits

#!/usr/bin/python # Pwn And Beans by Mighty-D and 7eK presents: # Winamp 5582985 (in_mod plugin) Stack Overflow # A Script Kiddie Friendly Production # WINDOWS XP SP3 FULLY PATCHED - NO ASLR OR DEP BYPASS yet # Bug found by wwwexploit-dbcom/exploits/15248/ # An improvement to wwwexploit-dbcom/exploits/15287/ # POC by f ...
#!/usr/bin/python # Pwn And Beans by Mighty-D presents: # Winamp 5582985 (in_mod plugin) Stack Overflow # WINDOWS XP SP3 FULLY PATCHED - NO ASLR OR DEP BYPASS yet # Bug found by wwwexploit-dbcom/exploits/15248/ # POC by fdisk # Exploit by Mighty-D # Special thanks to: # fdisk: Who wrote the skeleton of what you are looking at # Ryuji ...
Source: aluigiorg/adv/winamp_1-advtxt ####################################################################### Luigi Auriemma Application: Winamp wwwwinampcom Versions: <= 5582985 (aka v5581) Platforms: Windows Bugs: A] integer overflow in in_mkv B] i ...