CVE Feed

    Dashboard / CVE / CVE-2008-4771

    CVE-2008-4771

    Stack-based buffer overflow in VATDecoder.VatCtrl.1 ActiveX control in (1) 4xem VatCtrl Class (VATDecoder.dll 1.0.0.27 and 1.0.0.51), (2) D-Link MPEG4 SHM Audio Control (VAPGDecoder.dll 1.7.0.5), (3) Vivotek RTSP MPEG4 SP Control (RtspVapgDecoderNew.dll 2.0.0.39), and possibly other products, allows remote attackers to execute arbitrary code via a long Url property. NOTE: some of these details are obtained from third party information.

    Published:Oct 28, 2008
    Last Modified:Apr 23, 2026
    EPS:Oct 28, 2008
    EPSS Score:0.16084
    CVSS Score:9.3

    Affected Products

    Vendor
    4xem
    Product
    Vatctrl Class
    Vendor
    D-link
    Product
    Mpeg4 Shm Audio Control
    Vendor
    Vivotek
    Product
    Rtsp Mpeg4 Sp Control

    References

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High