CVE-2008-1044
Last modified
CVE-2008-1044 is a vulnerability of currently unknown severity. Stack-based buffer overflow in the Quantum Streaming Player (Quantum Streaming IE Player) ActiveX control (aka QSP2IE.QSP2IE) in qsp2ie07076007.dll 7.7.6.7 and qsp2ie07074039.dll 7.7.4.39 in Move Media Player allows remote attackers to execute arbitrary code via a long argument to the UploadLogs method, a different vector than CVE-2007-4722. NOTE: some of these details are obtained from third party information.. EPSS estimates a 4.84% chance of exploitation in the next 30 days.
Description
Stack-based buffer overflow in the Quantum Streaming Player (Quantum Streaming IE Player) ActiveX control (aka QSP2IE.QSP2IE) in qsp2ie07076007.dll 7.7.6.7 and qsp2ie07074039.dll 7.7.4.39 in Move Media Player allows remote attackers to execute arbitrary code via a long argument to the UploadLogs method, a different vector than CVE-2007-4722. NOTE: some of these details are obtained from third party information.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Move Networks Inc | Move Media Player | All versions |
| Move Networks Inc | Qunatum Streaming Player | 7.7.4_39 |
| Move Networks Inc | Qunatum Streaming Player | 7.7.6.7 |
References
- http://secunia.com/advisories/29108Vendor Advisory
- http://secunia.com/advisories/29108Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-1044?
How severe is CVE-2008-1044?
How do I fix CVE-2008-1044?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2008
- CVE-2008-1038PHP remote file inclusion vulnerability in mod/mod.extmanage…
- CVE-2008-1039SQL injection vulnerability in question.asp in PORAR WEBBOAR…
- CVE-2008-1040Buffer overflow in the Single Sign-On function in Fujitsu In…
- CVE-2008-1041Cross-site scripting (XSS) vulnerability in mwhois.php in Ma…
- CVE-2008-1042Directory traversal vulnerability in include/body.inc.php in…
- CVE-2008-1043PHP remote file inclusion vulnerability in templates/default…
- CVE-2008-1045Cross-site scripting (XSS) vulnerability in the file tree na…
- CVE-2008-1046PHP remote file inclusion vulnerability in footer.php in Qui…
- CVE-2008-1047Cross-site scripting (XSS) vulnerability in tiki-edit_articl…
- CVE-2008-1048Cross-site scripting (XSS) vulnerability in manager/xmedia.p…
- CVE-2008-1049Unspecified vulnerability in Parallels SiteStudio before 1.7…
- CVE-2008-1050SQL injection vulnerability in index.php in Softbiz Jokes & …
Are you affected by CVE-2008-1044?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
