The parseIrcUrl function in src/kvirc/kernel/kvi_ircurl.cpp in KVIrc 3.2.0 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in an (1) irc:// or (2) irc6:// URI.
References
Configurations
Information
Published : 2007-06-26 11:30
Updated : 2018-10-16 09:46
NVD link : CVE-2007-2951
Mitre link : CVE-2007-2951
JSON object : View
CWE
Products Affected
kvirc
- irc_client