CVE-2008-4729

Hummingbird Exceed < 13.0 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in Hummingbird.XWebHostCtrl.1 ActiveX control (hclxweb.dll) in Hummingbird Xweb ActiveX Control 13.0 and earlier allows remote attackers to execute arbitrary code via a long PlainTextPassword property. NOTE: code execution might not be possible in 13.0.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Thomas Pollet · htmldoswindows
https://www.exploit-db.com/exploits/6761

Scores

EPSS 0.0830
EPSS Percentile 92.3%

Details

CWE
CWE-119
Status published
Products (6)
hummingbird/exceed 9.0
hummingbird/exceed 10.0
hummingbird/exceed 2006
hummingbird/exceed 2007
hummingbird/exceed < 13.0
hummingbird/exceed_powersuite
Published Oct 24, 2008
Tracked Since Feb 18, 2026