Computer Security
[EN] securityvulns.ru
no-pyccku



JRE/JDK/WINAMP/ICQ/MediaPlayer sound schema files download
updated since 17.07.2002
Published:27.08.2004
Source:BUGTRAQ
SecurityVulns ID:2160
Type:client
Level:6/10
Description:ICQ sound schemas are downloaded without user's intervation. It allows to upload file to known location.
Affected:MICROSOFT : Media Player 7.1
 SUN : JDK 1.4
 ORACLE : JRE 1.4
 MIRABILIS : ICQ 2002
 NULLSOFT : Winamp 2.80
 NULLSOFT : Winamp 3.0
 NULLSOFT : WinAmp 5.04
Original documentdocumentsilent, WinAmp => 5.04 XML Remote Code exec (27.08.2004)
 documenthttp-equiv_(at)_excite.com, Terrible: Windows Media Player (28.08.2002)
 documentjelmer, RETRY : newly released winamp 3 fails to address serious "execution of arbitrary" code issue when combined with MSIE6 (20.08.2002)
 documentjelmer, WINAMP also allows execution of arbitrary code (probably a lot more programs aswell) (19.07.2002)
 documentjelmer, Java webstart also allows execution of arbitrary code (19.07.2002)
 documentjelmer, ICQ and MSIE allow execution of arbitrary code (17.07.2002)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server