Vulnerabilities > Nullsoft > Winamp > 3.1

DATE CVE VULNERABILITY TITLE RISK
2004-08-28 CVE-2004-0820 Local Security vulnerability in Winamp
Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.
local
low complexity
nullsoft
4.6
2003-09-17 CVE-2003-0765 Remote Security vulnerability in Winamp
The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Track data size" value.
network
low complexity
nullsoft
7.5
2002-12-31 CVE-2002-2392 Unspecified vulnerability in Nullsoft Winamp
Winamp 2.65 through 3.0 stores skin files in a predictable file location, which allows remote attackers to execute arbitrary code via a URL reference to (1) wsz and (2) wal files that contain embedded code.
network
low complexity
nullsoft
6.4