Vulnerabilities > Xunlei

DATE CVE VULNERABILITY TITLE RISK
2012-04-11 CVE-2012-2224 Code Injection vulnerability in Xunlei Thunder 7.2.6
Xunlei Thunder before 7.2.6 allows remote attackers to execute arbitrary code via a crafted file, related to a "DLL injection vulnerability."
network
low complexity
xunlei CWE-94
7.5
2007-11-27 CVE-2007-6144 Buffer Errors vulnerability in Xunlei web Thunder 5.7.4
Heap-based buffer overflow in the PPlayer.XPPlayer.1 ActiveX control in pplayer.dll_1_work in Xunlei Thunder 5.7.4.401 allows remote attackers to execute arbitrary code via a long string in a FlvPlayerUrl property value.
network
xunlei CWE-119
6.0
2007-09-24 CVE-2007-5064 Buffer Errors vulnerability in Xunlei web Thunder 5.6.9.344
Buffer overflow in a certain ActiveX control in Xunlei Web Thunder 5.6.9.344, possibly the DapPlayer ActiveX control in DapPlayer_Now.dll, allows remote attackers to execute arbitrary code via a long first argument to the DownURL2 method.
network
xunlei CWE-119
6.8
2007-06-20 CVE-2007-3296 Unspecified vulnerability in Xunlei web Thunderbolt 1.7.3.109
The ThunderServer.webThunder.1 ActiveX control in xunlei Web Thunderbolt 1.7.3.109 allows remote attackers to download arbitrary files and conduct other unauthorized actions by invoking dangerous methods.
network
xunlei
critical
9.3