Записи mIRC
9 опубликованных записей вендора mirc.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 2 · 22,2 %
- Pre-auth RCE
- 6
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-88 Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
49В плане | CVE-2008-4449Готовый эксплойт | Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.mirc · mirc · CWE-119 | Критическая9,3 | — | 38,7 % | 6 окт. 2008 г. |
48В плане | CVE-2019-6453Proof of concept | mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers.mirc · mirc · CWE-88 | Высокая8,1 | — | 54,3 % | 18 февр. 2019 г. |
48В плане | CVE-2003-1336Готовый эксплойт | Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.mirc · mirc · CWE-119 | Критическая9,3 | — | 35,7 % | 31 дек. 2003 г. |
30Наблюдать | CVE-2008-7314Эксплойта нет | mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.mirc · mirc · CWE-400 | Высокая7,5 | — | 1,3 % | 23 янв. 2020 г. |
28Наблюдать | CVE-2007-4402Эксплойта нет | Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter imirc · mirc | Средняя6,8 | — | 3,2 % | 18 авг. 2007 г. |
28Наблюдать | CVE-2007-4403Эксплойта нет | The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter imirc · plug-in for winamp · CWE-264 | Средняя6,8 | — | 2,9 % | 18 авг. 2007 г. |
28Наблюдать | CVE-2007-4401Эксплойта нет | Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts in mIRC allow user-asmirc · advanced integration plugin | Средняя6,8 | — | 2,4 % | 18 авг. 2007 г. |
21Наблюдать | CVE-2011-5282Эксплойта нет | mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.mirc · mirc · CWE-200 | Средняя5,3 | — | 1,1 % | 21 янв. 2020 г. |
18Наблюдать | CVE-2003-1508Эксплойта нет | Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attacmirc · mirc · CWE-119 | Средняя4,3 | — | 2,1 % | 31 дек. 2003 г. |
- CVE-2008-444949В плане
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.
КритическаяCVSS 9,3Готовый эксплойтEPSS 39 %mirc · mirc6 окт. 2008 г.
- CVE-2019-645348В плане
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers.
ВысокаяCVSS 8,1Proof of conceptEPSS 54 %mirc · mirc18 февр. 2019 г.
- CVE-2003-133648В плане
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
КритическаяCVSS 9,3Готовый эксплойтEPSS 36 %mirc · mirc31 дек. 2003 г.
- CVE-2008-731430Наблюдать
mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mirc · mirc23 янв. 2020 г.
- CVE-2007-440228Наблюдать
Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter i
СредняяCVSS 6,8Эксплойта нетEPSS 3 %mirc · mirc18 авг. 2007 г.
- CVE-2007-440328Наблюдать
The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter i
СредняяCVSS 6,8Эксплойта нетEPSS 3 %mirc · plug-in for winamp18 авг. 2007 г.
- CVE-2007-440128Наблюдать
Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts in mIRC allow user-as
СредняяCVSS 6,8Эксплойта нетEPSS 2 %mirc · advanced integration plugin18 авг. 2007 г.
- CVE-2011-528221Наблюдать
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
СредняяCVSS 5,3Эксплойта нетEPSS 1 %mirc · mirc21 янв. 2020 г.
- CVE-2003-150818Наблюдать
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attac
СредняяCVSS 4,3Эксплойта нетEPSS 2 %mirc · mirc31 дек. 2003 г.