vendor:
UnrealIRCd
by:
DiGMi
10
CVSS
CRITICAL
Stack Overflow
121
CWE
Product Name: UnrealIRCd
Affected Version From: 3.2.8.1
Affected Version To: 3.2.8.1
Patch Exists: YES
Related CWE: CVE-2010-2075
CPE: a:unrealircd:unrealircd:3.2.8.1
Platforms Tested: Windows 7
2011
UnrealIRCd local configuration stack overflow
This exploit allows an attacker to execute arbitrary code on a system running UnrealIRCd. By adding a malicious entry to the unrealircd.conf file, an attacker can trigger a stack overflow and gain control of the target system.
Mitigation:
Upgrade to a patched version of UnrealIRCd (3.2.8.2 or later).