VYPR

Bnc

by Bnc

CVEs (3)

  • CVE-2004-1052Mar 1, 2005
    risk 0.00cvss —epss 0.04

    Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that contains many (1) ! (exclamation) or (2) @ (at sign) characters.

  • CVE-2004-2612Dec 31, 2004
    risk 0.00cvss —epss 0.02

    BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users.

  • CVE-2004-1482Dec 31, 2004
    risk 0.00cvss —epss 0.02

    The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.