7.5
CVSSv2

CVE-2008-1044

Published: 27/02/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in the Quantum Streaming Player (Quantum Streaming IE Player) ActiveX control (aka QSP2IE.QSP2IE) in qsp2ie07076007.dll 7.7.6.7 and qsp2ie07074039.dll 7.7.4.39 in Move Media Player allows remote malicious users to execute arbitrary code via a long argument to the UploadLogs method, a different vector than CVE-2007-4722. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

move networks inc move media player

move networks inc qunatum streaming player 7.7.4_39

move networks inc qunatum streaming player 7.7.6.7

Exploits

<!-- Move Networks Quantum Streaming Player Control UploadLogs() Buffer Overflow Exploit written by eb Tested on Windows XP SP2(fully patched) English, IE6, qsp2ie07074039dll version 77439(digitally signed Tuesday, September 18, 2007 7:10:35PM) Thanks to hdm and the Metasploit crew --> <html> <head> <titleMove Netw ...