9.3

CVE-2006-0708

Exploit
Multiple buffer overflows in NullSoft Winamp 5.13 and earlier allow remote attackers to execute arbitrary code via (1) an m3u file containing a long URL ending in .wma, (2) a pls file containing a File1 field with a long URL ending in .wma, or (3) an m3u file with a long filename, variants of CVE-2005-3188 and CVE-2006-0476.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NullsoftWinamp Version5.0
NullsoftWinamp Version5.01
NullsoftWinamp Version5.02
NullsoftWinamp Version5.03
NullsoftWinamp Version5.04
NullsoftWinamp Version5.05
NullsoftWinamp Version5.06
NullsoftWinamp Version5.07
NullsoftWinamp Version5.08c
NullsoftWinamp Version5.08d
NullsoftWinamp Version5.08e
NullsoftWinamp Version5.09
NullsoftWinamp Version5.11
NullsoftWinamp Version5.12
NullsoftWinamp Version5.13
NullsoftWinamp Version5.091
NullsoftWinamp Version5.093
NullsoftWinamp Version5.094
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 16.22% 0.942
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C