7.6
CVSSv2

CVE-2008-4748

Published: 27/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in the URI handler in KVirc 3.4.0, when set as the default application for processing IRC URIs, allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in the irc:// URI.

Vulnerable Product Search on Vulmon Subscribe to Product

kvirc kvirc 3.4.0

Exploits

<!-- KVIrc v340 Virgo Remote Format String Exploit (PoC) Summary: KVIrc is a free portable IRC client based on the excellent Qt GUI toolkit KVirc is being written by Szymon Stefanek and the KVIrc Development Team with the contribution of many IRC addicted developers around the world Product web page: wwwkvircnet/ Vulnerabi ...