Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
XChat 1.8.7 and earlier, including default configurations of 1.4.2 and 1.4.3, allows remote attackers to execute arbitrary IRC commands as other clients via encoded characters in a PRIVMSG command that calls CTCP PING, which expands the characters in the client response when the percascii variable is set.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
X-Chat CTCP Ping任意远程IRC命令执行漏洞
Vulnerability Description
含1.4.2版本和1.4.3版本默认配置的XChat 1.8.7版本及更早版本存在漏洞。远程攻击者可以像其他客户端借助调用CTCP PING的PRIVMSG命令中的编码字符执行任意IRC命令,该漏洞在设置percascii变量时扩展客户端响应中的字符。
CVSS Information
N/A
Vulnerability Type
N/A