Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown
CVE-2006-2415
Disclosure Date: May 16, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in FlexChat 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username and (2) CFTOKEN parameter in (a) index.cfm and (3) CFTOKEN and (4) CFID parameter in (b) chat.cfm.
0
Attacker Value
Unknown
CVE-2004-0409
Disclosure Date: June 01, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2003-1000
Disclosure Date: January 05, 2004 (last updated February 22, 2025)
xchat 2.0.6 allows remote attackers to cause a denial of service (crash) via a passive DCC request with an invalid ID number, which causes a null dereference.
0
Attacker Value
Unknown
CVE-2002-0006
Disclosure Date: June 25, 2002 (last updated February 22, 2025)
XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as other clients via encoded characters in a PRIVMSG command that calls CTCP PING, which expands the characters in the client response when the percascii variable is set.
0
Attacker Value
Unknown
CVE-2002-0382
Disclosure Date: June 25, 2002 (last updated February 22, 2025)
XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell metacharacters.
0
Attacker Value
Unknown
CVE-2001-0792
Disclosure Date: October 18, 2001 (last updated February 22, 2025)
Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.
0
Attacker Value
Unknown
CVE-2000-0787
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.
0