Vulnerabilities (CVE)

Filtered by vendor Nullsoft Subscribe
Filtered by product Winamp
Total 62 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-0284 1 Nullsoft 1 Winamp 2025-04-03 2.6 LOW N/A
Winamp 2.78 and 2.77, when opening a wma file that requires a license, sends the full path of the Temporary Internet Files directory to the web page that is processing the license, which could allow malicious web servers to obtain the pathname.
CVE-2000-0624 1 Nullsoft 1 Winamp 2025-04-03 7.5 HIGH N/A
Buffer overflow in Winamp 2.64 and earlier allows remote attackers to execute arbitrary commands via a long #EXTINF: extension in the M3U playlist.