← All CVEs

CVE-2007-2498

high · 9.3

libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of these details are obtained from third party information.

9.3
CVSS
10.2%
EPSS (exploit prob.)
95th
EPSS percentile
2007-05-04
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
nullsoftwinamp5.2
nullsoftwinamp5.3
nullsoftwinamp5.21
nullsoftwinamp5.22
nullsoftwinamp5.23
nullsoftwinamp5.24
nullsoftwinamp5.31
nullsoftwinamp5.32
nullsoftwinamp5.33
nullsoftwinamp5.34

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-2498