5.1

CVE-2004-1150

Exploit
Stack-based buffer overflow in the in_cdda.dll plugin for Winamp 5.0 through 5.08c allows attackers to execute arbitrary code via a cda:// URL with a long (1) device name or (2) sound track number, as demonstrated with a .m3u or .pls playlist file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NullsoftWinamp Version5.0
NullsoftWinamp Version5.01
NullsoftWinamp Version5.02
NullsoftWinamp Version5.03
NullsoftWinamp Version5.04
NullsoftWinamp Version5.05
NullsoftWinamp Version5.06
NullsoftWinamp Version5.07
NullsoftWinamp Version5.08c
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.63% 0.902
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.1 4.9 6.4
AV:N/AC:H/Au:N/C:P/I:P/A:P