CVE Tools

Hummingbird

15 CVEs tracked since 2001. Since Sep 2001, none of them reached CISA KEV.

Hummingbird CVEs per month

Sep 2001 to Oct 2008. Point at a month, or focus the strip and use the arrow keys.
Hummingbird CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2001-0920
2001-10null or fewer
2001-11null or fewer
2001-12null or fewer
2002-01null or fewer
2002-02null or fewer
2002-03null or fewer
2002-04null or fewer
2002-05null or fewer
2002-06null or fewer
2002-07null or fewer
2002-08null or fewer
2002-09null or fewer
2002-10null or fewer
2002-11null or fewer
2002-12null or fewer
2003-01null or fewer
2003-02null or fewer
2003-03null or fewer
2003-04null or fewer
2003-05null or fewer
2003-06null or fewer
2003-07null or fewer
2003-08null or fewer
2003-09null or fewer
2003-10null or fewer
2003-11null or fewer
2003-12null or fewer
2004-01null or fewer
2004-02null or fewer
2004-03null or fewer
2004-04null or fewer
2004-05null or fewer
2004-06null or fewer
2004-07null or fewer
2004-08null or fewer
2004-09null or fewer
2004-10null or fewer
2004-11null or fewer
2004-12null or fewer
2005-01null or fewer
2005-02null or fewer
2005-0330
2005-04null or fewer
2005-05null or fewer
2005-0610
2005-0710
2005-0810
2005-09null or fewer
2005-10null or fewer
2005-11null or fewer
2005-12null or fewer
2006-0130
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-05null or fewer
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-06null or fewer
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-1020
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-1020

Products

The products that kept showing up in Hummingbird's monthly top three, with their CVEs summed over those months.

  1. Connectivity43 months
  2. Exceed43 months
  3. Cyberdocs31 month
  4. Enterprise Collaboration31 month
  5. Collaboration11 month
  6. Deployment Wizard11 month
  7. Exceed Powersuite11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Hummingbird.

  1. CVE-2008-4729Stack-based buffer overflow in Hummingbird.XWebHostCtrl.1 ActiveX control (hclxweb.dll) in Hummingbird Xweb ActiveX Control 13.0 and earlier allows remote attackers to execute arbitrary code via a ...6.8
  2. CVE-2008-4728Multiple insecure method vulnerabilities in the DeployRun.DeploymentSetup.1 (DeployRun.dll) ActiveX control 10.0.0.44 in Hummingbird Deployment Wizard 2008 allow remote attackers to execute arbitra...9.3
  3. CVE-2004-2728Buffer overflow in the FTP server of Hummingbird Connectivity 7.1 and 9.0 allows remote, authenticated users to cause a denial of service (application crash) via a long argument to the XCWD command.3.5
  4. CVE-2004-2729Inetd32 Administration Tool of Hummingbird Connectivity 7.1 and 9.0 allows local users to execute arbitrary code by changing the program for handling incoming connections.4.4
  5. CVE-2006-0172Cross-site scripting (XSS) vulnerability in the file manager utility in Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to inject arbit...3.5
  6. CVE-2006-0173Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to misrepresent the type and name of a file via modified doc_ext and id parameters, whi...4.0
  7. CVE-2006-0174Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to obtain sensitive information (intranet IP addresses and enumerations of valid parame...4.0
  8. CVE-2005-2599Hummingbird FTP for Connectivity 10.0 uses weak encryption (trivial encoding) to store the user's password in the FTP profile, which allows attackers to gain privileges.7.5
  9. CVE-2004-2258Xconfig in Hummingbird Exceed before 9.0.0.1, when the Screen Definition is password-protected, allows local users to access certain options by switching to another tab, then switching back to the ...2.1
  10. CVE-2005-1815Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of service and possibly execute arbitrary code via (1) an FTP command with a long...5.0
  11. CVE-2003-1100Multiple cross-site scripting (XSS) vulnerabilities in Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allow remote attackers to inject arbitrary web script or HTML via certain vectors.4.3
  12. CVE-2003-1103SQL injection vulnerability in loginact.asp for Hummingbird CyberDOCS before 3.9 allows remote attackers to execute arbitrary SQL commands.7.5
  13. CVE-2003-1101Hummingbird CyberDOCS 3.5.1, 3.9, and 4.0 allows remote attackers to obtain the full path of the DM Web Server via invalid login credentials, which reveals the path in an error message.5.0
  14. CVE-1999-1196Hummingbird Exceed X version 5 allows remote attackers to cause a denial of service via malformed data to port 6000.5.0
  15. CVE-1999-1280Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file.7.5

The record

Peak rank
#32 in Jan 2006
Busiest month shown
Mar 2005, 3 CVEs
Months with a KEV entry
0 since Sep 2001
Monthly snapshots
8 since 2001
Hummingbird's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store