CVE-2004-0820: Medium severity nullsoft winamp vulnerability
Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0820?
CVE-2004-0820 is classified as a medium severity vulnerability due to its potential for executing arbitrary scripts remotely.
How do I fix CVE-2004-0820?
To fix CVE-2004-0820, upgrade to Winamp version 5.0.4 or later which includes the necessary security patches.
What software versions are affected by CVE-2004-0820?
CVE-2004-0820 affects multiple versions of Winamp including versions 2.24 through 2.91 and 5.01 through 5.03.
What type of vulnerability is CVE-2004-0820?
CVE-2004-0820 is a remote code execution vulnerability that allows attackers to execute arbitrary scripts from specially crafted skin files.
Can CVE-2004-0820 be exploited without user interaction?
Yes, CVE-2004-0820 can be exploited without user interaction if a user opens a malicious skin file.