Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4407

Опубликовано: 18 авг. 2007
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which allows remote attackers to (1) set or remove certain channel modes via a "netriding" attack or (2) take over a channel by joining an unlinked server with the A/Upass and then setting a new Apass.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:universal_ircd:ircu:2.10.12.03:*:*:*:*:*:*:*
cpe:2.3:a:universal_ircd:ircu:2.10.12.04:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.00686
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 18 лет назад

ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which allows remote attackers to (1) set or remove certain channel modes via a "netriding" attack or (2) take over a channel by joining an unlinked server with the A/Upass and then setting a new Apass.

debian
около 18 лет назад

ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops ...

github
больше 3 лет назад

ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which allows remote attackers to (1) set or remove certain channel modes via a "netriding" attack or (2) take over a channel by joining an unlinked server with the A/Upass and then setting a new Apass.

EPSS

Процентиль: 71%
0.00686
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other