CVE-2008-4729
Published Oct 24, 2008
Last updated 7 years ago
Overview
- Description
- Stack-based buffer overflow in Hummingbird.XWebHostCtrl.1 ActiveX control (hclxweb.dll) in Hummingbird Xweb ActiveX Control 13.0 and earlier allows remote attackers to execute arbitrary code via a long PlainTextPassword property. NOTE: code execution might not be possible in 13.0.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:hummingbird:exceed:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "044CA4D8-ACF2-4CDC-A51B-0FC63DAC4918", "versionEndIncluding": "13.0" }, { "criteria": "cpe:2.3:a:hummingbird:exceed:9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C3F1215-D202-4783-A350-5E27952D7620" }, { "criteria": "cpe:2.3:a:hummingbird:exceed:10.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8742368E-B84F-444D-B791-7920028F0798" }, { "criteria": "cpe:2.3:a:hummingbird:exceed:2006:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61317B48-4B10-46D0-B37C-60CDAC9FAE0F" }, { "criteria": "cpe:2.3:a:hummingbird:exceed:2007:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C73870B-FD87-4628-9F22-23554D7BB9D5" }, { "criteria": "cpe:2.3:a:hummingbird:exceed_powersuite:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97D9D378-3C28-4D1F-9D86-7AAE4C04F005" } ], "operator": "OR" } ] } ]