RSS   Vulnerabilities for 'Irc services'   RSS

2007-11-26
 
CVE-2007-6123

CWE-noinfo
 

 
Unspecified vulnerability in IRC Services 5.1.8 has unknown impact and attack vectors.

 
 
CVE-2007-6122

CWE-20
 

 
The default_encrypt function in encrypt.c in IRC Services before 5.0.63, and 5.1.x before 5.1.7, allows remote attackers to cause a denial of service (daemon crash) via a long password. NOTE: some of these details are obtained from third party information.

 
2007-06-14
 
CVE-2007-3246

 

 
The do_set_password function in modules/chanserv/set.c in IRC Services before 5.0.60 preserves channel founder privileges across a channel password change (ChanServ SET PASSWORD), which allows remote authenticated users to obtain the new password through automated e-mail, or perform privileged actions without knowing the new password.

 
 
CVE-2007-3245

 

 
IRC Services before 5.0.62, and 5.1 before 5.1pre3, allows remote attackers to disconnect users with guest nicknames by linking a guest nickname to a nickname that is already registered.

 

 >>> Vendor: Irc services 2 Products
Nickserv listlinks
Irc services


Copyright 2024, cxsecurity.com

 

Back to Top