Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-2785

The IRC Protocol component in KVIrc 3.x and 4.x before r4693 does not properly handle \ (backslash) characters, which allows remote authenticated users to execute arbitrary CTCP commands via vectors involving \r and \40 sequences, a different vulnerability than CVE-2010-2451 and CVE-2010-2452.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.113
EPSS Ranking 93.2%
CVSS Severity
CVSS v2 Score 6.5
References
Products affected by CVE-2010-2785
  • Kvirc » Kvirc » Version: 3.0.0
    cpe:2.3:a:kvirc:kvirc:3.0.0
  • Kvirc » Kvirc » Version: 3.0.1
    cpe:2.3:a:kvirc:kvirc:3.0.1
  • Kvirc » Kvirc » Version: 3.4.0
    cpe:2.3:a:kvirc:kvirc:3.4.0
  • Kvirc » Kvirc » Version: 3.4.2
    cpe:2.3:a:kvirc:kvirc:3.4.2
  • Kvirc » Kvirc » Version: 4.0.0
    cpe:2.3:a:kvirc:kvirc:4.0.0
  • Kvirc » Kvirc » Version: 4.0.2
    cpe:2.3:a:kvirc:kvirc:4.0.2


Contact Us

Shodan ® - All rights reserved