← Back

CVE-2004-0820

nvd nist
Published: Aug 28, 2004Modified: Apr 16, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 3.9 / Impact: 6.4
Source: NVD

Description

Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.

Affected (33)

Products: Nullsoft: Winamp
1 product
Winamp
Configuration A
33 vulnerable
Vulnerable SoftwareAffected Versions
Nullsoft
Version 2.10
Version 2.24
Version 2.4
Version 2.50
Version 2.5e
Version 2.60
Version 2.60
Version 2.61
Version 2.62
Version 2.64
Version 2.64
Version 2.65
Version 2.70
Version 2.70
Version 2.71
Version 2.72
Version 2.73
Version 2.73
Version 2.74
Version 2.75
Version 2.76
Version 2.77
Version 2.78
Version 2.79
Version 2.80
Version 2.81
Version 2.91
Version 3.0
Version 3.1
Version 5.01
Version 5.02
Version 5.03
Version 5.04

References (8)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.