Vulnerability Details CVE-2003-0765
The IN_MIDI.DLL plugin 3.01 and earlier, as used in Winamp 2.91, allows remote attackers to execute arbitrary code via a MIDI file with a large "Track data size" value.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.045
EPSS Ranking 88.6%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0765
-
cpe:2.3:a:nullsoft:winamp:2.81
-
cpe:2.3:a:nullsoft:winamp:2.91
-
cpe:2.3:a:nullsoft:winamp:3.0
-
cpe:2.3:a:nullsoft:winamp:3.1