Vulnerability Name:

CVE-2002-2392 (CCN-9630)

Assigned:2002-07-17
Published:2002-07-17
Updated:2008-09-05
Summary:Winamp 2.65 through 3.0 stores skin files in a predictable file location, which allows remote attackers to execute arbitrary code via a URL reference to (1) wsz and (2) wal files that contain embedded code.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.4 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: CCN
Type: BugTraq Mailing List, Wed Jul 17 2002 - 17:50:58 CDT
WINAMP also allows execution of arbitrary code (probably a lot more programs aswell)

Source: MITRE
Type: CNA
CVE-2002-2392

Source: BUGTRAQ
Type: UNKNOWN
20020717 WINAMP also allows execution of arbitrary code (probably a lot more programs aswell)

Source: XF
Type: UNKNOWN
winamp-wsz-code-execution(9630)

Source: CCN
Type: OSVDB ID: 60254
Winamp wsz / wal File Predictable Skin Location Arbitrary Code Execution

Source: BID
Type: Exploit
5266

Source: CCN
Type: BID-5266
Nullsoft Winamp Skin Predictable File Location Vulnerability

Source: XF
Type: UNKNOWN
winamp-wsz-code-execution(9630)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:nullsoft:winamp:2.65:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.70:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.71:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.72:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.73:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.74:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.75:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.76:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.77:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.78:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.79:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:2.80:*:*:*:*:*:*:*
  • OR cpe:/a:nullsoft:winamp:3.1:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:nullsoft:winamp:2.80:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    nullsoft winamp 2.65
    nullsoft winamp 2.70
    nullsoft winamp 2.71
    nullsoft winamp 2.72
    nullsoft winamp 2.73
    nullsoft winamp 2.74
    nullsoft winamp 2.75
    nullsoft winamp 2.76
    nullsoft winamp 2.77
    nullsoft winamp 2.78
    nullsoft winamp 2.79
    nullsoft winamp 2.80
    nullsoft winamp 3.1
    nullsoft winamp 2.80