winamp records
7 published records for vendor winamp.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 1 · 14.3%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer6
- CWE-763 Release of Invalid Pointer or Reference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
58Plan | CVE-2008-0065Weaponized | Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a lonwinamp · nullsoft winamp · CWE-119 | Critical10.0 | — | 61.3% | Jan 22, 2008 |
33Monitor | CVE-2013-4695Proof of concept | Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Executionwinamp · winamp · CWE-763 | High7.8 | — | 5.3% | Dec 27, 2019 |
31Monitor | CVE-2017-10727No exploit | Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related twinamp · winamp · CWE-119 | High7.8 | — | 1.1% | Jul 5, 2017 |
31Monitor | CVE-2017-10728No exploit | Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related twinamp · winamp · CWE-119 | High7.8 | — | 1.1% | Jul 5, 2017 |
31Monitor | CVE-2017-10726No exploit | Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related twinamp · winamp · CWE-119 | High7.8 | — | 1.1% | Jul 5, 2017 |
29Monitor | CVE-2017-10725No exploit | Winamp 5.666 Build 3516(x86) allows attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Dawinamp · winamp · CWE-119 | High7.3 | — | 0.4% | Jul 5, 2017 |
28Monitor | CVE-2007-6403Proof of concept | Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in awinamp · nullsoft winamp · CWE-119 | Medium6.8 | — | 3.4% | Dec 17, 2007 |
- CVE-2008-006558Plan
Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a lon
CriticalCVSS 10.0WeaponizedEPSS 61%winamp · nullsoft winampJan 22, 2008
- CVE-2013-469533Monitor
Winamp 5.63: Invalid Pointer Dereference leading to Arbitrary Code Execution
HighCVSS 7.8Proof of conceptEPSS 5%winamp · winampDec 27, 2019
- CVE-2017-1072731Monitor
Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related t
HighCVSS 7.8No exploitEPSS 1%winamp · winampJul 5, 2017
- CVE-2017-1072831Monitor
Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related t
HighCVSS 7.8No exploitEPSS 1%winamp · winampJul 5, 2017
- CVE-2017-1072631Monitor
Winamp 5.666 Build 3516(x86) might allow attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related t
HighCVSS 7.8No exploitEPSS 1%winamp · winampJul 5, 2017
- CVE-2017-1072529Monitor
Winamp 5.666 Build 3516(x86) allows attackers to execute arbitrary code or cause a denial of service via a crafted .flv file, related to "Da
HighCVSS 7.3No exploitEPSS 0%winamp · winampJul 5, 2017
- CVE-2007-640328Monitor
Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in a
MediumCVSS 6.8Proof of conceptEPSS 3%winamp · nullsoft winampDec 17, 2007