Unrated severityNVD Advisory· Published Oct 22, 2008· Updated Apr 23, 2026
CVE-2008-4664
CVE-2008-4664
Description
Heap-based buffer overflow in QvodInsert.QvodCtrl.1 ActiveX control (QvodInsert.dll) in QVOD Player before 2.1.5 build 0053 allows remote attackers to execute arbitrary code via a long URL property. NOTE: some of these details are obtained from third party information.
Affected products
3cpe:2.3:a:qvod:qvod_player:1.0.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:qvod:qvod_player:1.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:qvod:qvod_player:2.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:qvod:qvod_player:2.5.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- secunia.com/advisories/28494nvdPatchVendor Advisory
- www.securityfocus.com/bid/27271nvdExploitPatch
- hi.baidu.com/muma_reader/blog/item/46bd0d7a04eb75e92f73b36e.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/39675nvd
News mentions
0No linked articles in our index yet.