eggheads records
4 published records for vendor eggheads.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 75%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2020-29576No exploit | The official eggdrop Docker images before 1.8.4rc2 contain a blank password for a root user.eggheads · eggdrop docker image | Critical9.8 | — | 3.0% | Dec 8, 2020 |
31Monitor | CVE-2004-0274No exploit | Share.mod in Eggheads Eggdrop IRC bot 1.6.10 through 1.6.15 can mistakenly assign STAT_OFFERED status to a bot that is not a sharebot, whicheggheads · eggdrop irc bot | High7.5 | — | 2.0% | Nov 23, 2004 |
30Monitor | CVE-2007-2807Proof of concept | Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers teggheads · eggdrop irc bot | Medium6.8 | — | 10.0% | May 22, 2007 |
20Monitor | CVE-2009-1789Proof of concept | mod/server.mod/servmsg.c in Eggheads Eggdrop and Windrop 1.6.19 and earlier allows remote attackers to cause a denial of service (crash) viaeggheads · eggdrop | Medium4.3 | — | 8.5% | May 26, 2009 |
- CVE-2020-2957640Plan
The official eggdrop Docker images before 1.8.4rc2 contain a blank password for a root user.
CriticalCVSS 9.8No exploitEPSS 3%eggheads · eggdrop docker imageDec 8, 2020
- CVE-2004-027431Monitor
Share.mod in Eggheads Eggdrop IRC bot 1.6.10 through 1.6.15 can mistakenly assign STAT_OFFERED status to a bot that is not a sharebot, which
HighCVSS 7.5No exploitEPSS 2%eggheads · eggdrop irc botNov 23, 2004
- CVE-2007-280730Monitor
Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers t
MediumCVSS 6.8Proof of conceptEPSS 10%eggheads · eggdrop irc botMay 22, 2007
- CVE-2009-178920Monitor
mod/server.mod/servmsg.c in Eggheads Eggdrop and Windrop 1.6.19 and earlier allows remote attackers to cause a denial of service (crash) via
MediumCVSS 4.3Proof of conceptEPSS 8%eggheads · eggdropMay 26, 2009