Arbitrary Script Execution in Winamp Skin Files

Arbitrary Script Execution in Winamp Skin Files

CVE-2004-0820 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

Winamp before 5.0.4 allows remote attackers to execute arbitrary script in the Local computer zone via script in HTML files that are referenced from XML files contained in a .wsz skin file.

Learn more about our Web Application Penetration Testing UK.