High severity8.1NVD Advisory· Published Feb 18, 2019· Updated Jun 17, 2026
CVE-2019-6453
CVE-2019-6453
Description
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Exploitation depends on browser-specific URI handling (Chrome is not exploitable).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:mirc:mirc:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mirc:mirc:*:*:*:*:*:*:*:*range: <7.55
- (no CPE)range: <7.55
Patches
Vulnerability mechanics
References
5- proofofcalc.com/cve-2019-6453-mIRC/nvdExploitThird Party Advisory
- twitter.com/proofofcalc/status/1097518413143003136nvdExploitThird Party Advisory
- www.exploit-db.com/exploits/46392/nvdExploitThird Party AdvisoryVDB Entry
- proofofcalc.com/advisories/20190218.txtnvdThird Party Advisory
- www.mirc.com/news.htmlnvdProduct
News mentions
0No linked articles in our index yet.