CVE-2008-4729
Hummingbird Exceed < 13.0 - Stack-Based Buffer Overflow via PlainTextPassword Property
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-4729. PoCs published by Thomas Pollet.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in an ActiveX control (CLSID: FFB6CC68-702D-4FE2-A8E7-4DE23835F0D2) by passing an overly long string to the PlainTextPassword property. The PoC demonstrates the vulnerability but does not include a full exploit payload.
Description
Stack-based buffer overflow in Hummingbird.XWebHostCtrl.1 ActiveX control (hclxweb.dll) in Hummingbird Xweb ActiveX Control 13.0 and earlier allows remote attackers to execute arbitrary code via a long PlainTextPassword property. NOTE: code execution might not be possible in 13.0.
Exploits (1)
This exploit targets a buffer overflow vulnerability in an ActiveX control (CLSID: FFB6CC68-702D-4FE2-A8E7-4DE23835F0D2) by passing an overly long string to the PlainTextPassword property. The PoC demonstrates the vulnerability but does not include a full exploit payload.