VYPR
Vendor

Bnc

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2004-1052Mar 1, 2005
    risk 0.00cvss —epss 0.04

    Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that contains many (1) ! (exclamation) or (2) @ (at sign) characters.

  • CVE-2004-1482Dec 31, 2004
    risk 0.00cvss —epss 0.02

    The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts.

  • CVE-2004-2612Dec 31, 2004
    risk 0.00cvss —epss 0.02

    BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users.