Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown

CVE-2024-51603

Disclosure Date: November 09, 2024 (last updated November 16, 2024)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Mircea N. NMR Strava activities allows DOM-Based XSS.This issue affects NMR Strava activities: from n/a through 1.0.6.
Attacker Value
Unknown

CVE-2008-7314

Disclosure Date: January 23, 2020 (last updated February 21, 2025)
mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.
Attacker Value
Unknown

CVE-2011-5282

Disclosure Date: January 21, 2020 (last updated February 21, 2025)
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
Attacker Value
Unknown

CVE-2019-6453

Disclosure Date: February 18, 2019 (last updated November 27, 2024)
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Exploitation depends on browser-specific URI handling (Chrome is not exploitable).
0
Attacker Value
Unknown

CVE-2008-4449

Disclosure Date: October 06, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.
0
Attacker Value
Unknown

CVE-2007-4402

Disclosure Date: August 18, 2007 (last updated October 04, 2023)
Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
0
Attacker Value
Unknown

CVE-2007-4401

Disclosure Date: August 18, 2007 (last updated October 04, 2023)
Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
0
Attacker Value
Unknown

CVE-2007-4403

Disclosure Date: August 18, 2007 (last updated October 04, 2023)
The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
0
Attacker Value
Unknown

CVE-2003-1336

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
0
Attacker Value
Unknown

CVE-2003-1508

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.
0