Записи kvirc
7 опубликованных записей вендора kvirc.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 71,4 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-134 Use of Externally-Controlled Format String1
- CWE-20 Improper Input Validation1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2010-2451Эксплойта нет | Multiple format string vulnerabilities in the DCC functionality in KVIrc 3.4 and 4.0 have unspecified impact and remote attack vectors.kvirc · kvirc · CWE-134 | Критическая10,0 | — | 2,7 % | 29 июн. 2010 г. |
39Наблюдать | CVE-2008-7070Proof of concept | Argument injection vulnerability in the URI handler in KVIrc 3.4.2 Shiny allows remote attackers to execute arbitrary commands via a " (quotkvirc · kvirc · CWE-94 | Критическая9,3 | — | 5,1 % | 25 авг. 2009 г. |
38Наблюдать | CVE-2010-2452Эксплойта нет | Directory traversal vulnerability in the DCC functionality in KVIrc 3.4 and 4.0 allows remote attackers to overwrite arbitrary files via unkkvirc · kvirc · CWE-22 | Критическая9,3 | — | 4,1 % | 29 июн. 2010 г. |
38Наблюдать | CVE-2007-2951Эксплойта нет | The parseIrcUrl function in src/kvirc/kernel/kvi_ircurl.cpp in KVIrc 3.2.0 allows user-assisted remote attackers to execute arbitrary commankvirc · irc client | Критическая9,3 | — | 3,2 % | 26 июн. 2007 г. |
32Наблюдать | CVE-2008-4748Proof of concept | Format string vulnerability in the URI handler in KVirc 3.4.0, when set as the default application for processing IRC URIs, allows remote atkvirc · kvirc · CWE-20 | Высокая7,6 | — | 8,2 % | 27 окт. 2008 г. |
28Наблюдать | CVE-2010-2785Proof of concept | The IRC Protocol component in KVIrc 3.x and 4.x before r4693 does not properly handle \ (backslash) characters, which allows remote authentikvirc · kvirc | Средняя6,5 | — | 7,6 % | 2 авг. 2010 г. |
20Наблюдать | CVE-1999-1351Эксплойта нет | Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attkvirc · irc client | Средняя5,0 | — | 1,6 % | 24 сент. 1999 г. |
- CVE-2010-245141В плане
Multiple format string vulnerabilities in the DCC functionality in KVIrc 3.4 and 4.0 have unspecified impact and remote attack vectors.
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %kvirc · kvirc29 июн. 2010 г.
- CVE-2008-707039Наблюдать
Argument injection vulnerability in the URI handler in KVIrc 3.4.2 Shiny allows remote attackers to execute arbitrary commands via a " (quot
КритическаяCVSS 9,3Proof of conceptEPSS 5 %kvirc · kvirc25 авг. 2009 г.
- CVE-2010-245238Наблюдать
Directory traversal vulnerability in the DCC functionality in KVIrc 3.4 and 4.0 allows remote attackers to overwrite arbitrary files via unk
КритическаяCVSS 9,3Эксплойта нетEPSS 4 %kvirc · kvirc29 июн. 2010 г.
- CVE-2007-295138Наблюдать
The parseIrcUrl function in src/kvirc/kernel/kvi_ircurl.cpp in KVIrc 3.2.0 allows user-assisted remote attackers to execute arbitrary comman
КритическаяCVSS 9,3Эксплойта нетEPSS 3 %kvirc · irc client26 июн. 2007 г.
- CVE-2008-474832Наблюдать
Format string vulnerability in the URI handler in KVirc 3.4.0, when set as the default application for processing IRC URIs, allows remote at
ВысокаяCVSS 7,6Proof of conceptEPSS 8 %kvirc · kvirc27 окт. 2008 г.
- CVE-2010-278528Наблюдать
The IRC Protocol component in KVIrc 3.x and 4.x before r4693 does not properly handle \ (backslash) characters, which allows remote authenti
СредняяCVSS 6,5Proof of conceptEPSS 8 %kvirc · kvirc2 авг. 2010 г.
- CVE-1999-135120Наблюдать
Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote att
СредняяCVSS 5,0Эксплойта нетEPSS 2 %kvirc · irc client24 сент. 1999 г.