← Back

Xunlei

xunlei

4 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Web Thunder
web_thunder
Thunder
thunder

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Xunlei
1Thunder
Apr 29, 2026
Apr 11, 2012
N/A· v4
N/A· v3
7.5 HIGH· v2
Xunlei Thunder before 7.2.6 allows remote attackers to execute arbitrary code via a crafted file, related to a "DLL injection vulnerability."
1Xunlei
1Web Thunder
Apr 23, 2026
Nov 27, 2007
N/A· v4
N/A· v3
6.0 MEDIUM· v2
Heap-based buffer overflow in the PPlayer.XPPlayer.1 ActiveX control in pplayer.dll_1_work in Xunlei Thunder 5.7.4.401 allows remote attackers to execute arbitrary code via a long string in a FlvPlayerUrl property value....Show more
Heap-based buffer overflow in the PPlayer.XPPlayer.1 ActiveX control in pplayer.dll_1_work in Xunlei Thunder 5.7.4.401 allows remote attackers to execute arbitrary code via a long string in a FlvPlayerUrl property value. NOTE: some of these details are obtained from third party information.Show less
1Xunlei
1Web Thunder
Apr 23, 2026
Sep 24, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Buffer overflow in a certain ActiveX control in Xunlei Web Thunder 5.6.9.344, possibly the DapPlayer ActiveX control in DapPlayer_Now.dll, allows remote attackers to execute arbitrary code via a long first argument to th...Show more
Buffer overflow in a certain ActiveX control in Xunlei Web Thunder 5.6.9.344, possibly the DapPlayer ActiveX control in DapPlayer_Now.dll, allows remote attackers to execute arbitrary code via a long first argument to the DownURL2 method. NOTE: some of these details are obtained from third party information.Show less
1Xunlei
1Web Thunderbolt
Apr 23, 2026
Jun 20, 2007
N/A· v4
N/A· v3
9.3 HIGH· v2
The ThunderServer.webThunder.1 ActiveX control in xunlei Web Thunderbolt 1.7.3.109 allows remote attackers to download arbitrary files and conduct other unauthorized actions by invoking dangerous methods.