mod_channel.bas in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not properly verify whether a host has the owner privileges required to delete IRC channel access entries, which allows remote malicious users to bypass intended restrictions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
the ignition project ignitionserver 0.3.0 |
||
the ignition project ignitionserver 0.3.1 |
||
the ignition project ignitionserver 0.3.2 |
||
the ignition project ignitionserver 0.3.4 |
||
the ignition project ignitionserver 0.3.6 |
||
the ignition project ignitionserver 0.3.3 |
||
the ignition project ignitionserver 0.3.5 |