Gom Player
Vendor:
First CVE: May 1, 2009 · Active for 17 years
9
Total CVEs
More Total CVEs than 86% of tracked products
1.5
Avg CVEs / Year
Higher CVE frequency than 56% of tracked products
7.5
Avg CVSS
Higher Avg CVSS than 59% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Gom Player over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 1, 2009
17 years ago
Most Recent CVE
Dec 15, 2025
221 days ago
CVE Severity & Scoring
Gom Player9 CVEs
33%
56%
11%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (11.1%)
Network2 (22.2%)
Unknown6 (66.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (33.3%)
High0 (0.0%)
Unknown6 (66.7%)
User Interaction
None1 (11.1%)
Unknown6 (66.7%)
Required2 (22.2%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None3 (33.3%)
Unknown6 (66.7%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-5881HIGH GOM Player 2.3.10.5266 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted fpx file. | Feb 21, 2017 | 7.8 | 39 | NO | YES |
CVE-2011-5162HIGH Stack-based buffer overflow in GOM Player 2.1.33.5071 allows user-assisted remote attackers to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: | Sep 15, 2012 | 9.3 | 38 | NO | YES |
CVE-2009-1497HIGH Stack-based buffer overflow in srt2smi.exe in Gretech Online Movie Player (GOM Player) 2.1.16.4635 allows remote attackers to cause a denial of service (crash) or execute arbitrary | May 1, 2009 | 9.3 | 35 | NO | YES |
CVE-2023-53874CRITICAL GOM Player 2.3.90.5360 contains a buffer overflow vulnerability in the equalizer preset name input field that allows attackers to crash the application. Attackers can overwrite the | Dec 15, 2025 | 9.8 | 34 | NO | NO |
CVE-2013-5715HIGH Buffer overflow in Gretech GOM Media Player before 2.2.53.5169 has unspecified impact and attack vectors. | Sep 9, 2013 | 10.0 | 29 | NO | NO |
CVE-2023-53875HIGH GOM Player 2.3.90.5360 contains a remote code execution vulnerability in its Internet Explorer component that allows attackers to execute arbitrary code through DNS spoofing. Attac | Dec 15, 2025 | 8.8 | 28 | NO | NO |
CVE-2013-5716MEDIUM Gretech GOM Media Player 2.2.53.5169 and possibly earlier allows remote attackers to cause a denial of service (application crash) via a crafted WAV file. | Sep 9, 2013 | 4.3 | 25 | NO | YES |
CVE-2013-7184MEDIUM Gretech GOM Media Player 2.2.56.5158 and earlier allows remote attackers to cause a denial of service (memory corruption) via a crafted AVI file. | Jan 24, 2014 | 4.3 | 24 | NO | YES |
CVE-2014-3899MEDIUM Gretech GOM Player 2.2.51.5149 and earlier allows remote attackers to cause a denial of service (launch outage) via a crafted image file. | Aug 12, 2014 | 4.3 | 14 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
5 CVEs
55.6% of CVEs· 93rd percentile
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Gom Player
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.3.90.5360 | 2 | 9.3 | 0.4% | 0 | 0 |
| 2.3.10.5266 | 1 | 7.8 | 8.2% | 0 | 1 |
| 2.1.9.3754 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.9.3753 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.8 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.6 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.50.5145 | 1 | 4.3 | 2.1% | 0 | 1 |
| 2.1.49.5139 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.47.5133 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.43.5119 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.40.5106 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.39.5101 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.37.5085 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.33.5071 | 3 | 7.9 | 3.6% | 0 | 2 |
| 2.1.3 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.28.5039 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.27.5031 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.25.5015 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.21.4846 | 2 | 7.2 | 2.0% | 0 | 1 |
| 2.1.2 | 2 | 7.2 | 2.0% | 0 | 1 |