The parseIrcUrl function in src/kvirc/kernel/kvi_ircurl.cpp in KVIrc 3.2.0 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in an (1) irc:// or (2) irc6:// URI.
References
Configurations
History
No history.
Information
Published : 2007-06-26 18:30
Updated : 2025-04-09 00:30
NVD link : CVE-2007-2951
Mitre link : CVE-2007-2951
CVE.ORG link : CVE-2007-2951
JSON object : View
Products Affected
kvirc
- irc_client
CWE