First published: Sat Aug 18 2007(Updated: )
The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Winamp |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4403 has a high severity rating due to the potential for arbitrary code execution.
To fix CVE-2007-4403, update the mIRC Control Plug-in for Winamp to the latest version available.
Users of the mIRC Control Plug-in for Winamp are at risk of CVE-2007-4403 if they open malicious .mp3 files.
CVE-2007-4403 enables user-assisted remote attacks that can lead to arbitrary code execution.
CVE-2007-4403 was disclosed in August 2007.