Vulnerabilities (CVE)

Filtered by vendor Cgiirc Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-8920 1 Cgiirc 1 Cgi\ 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
irc.cgi in CGI:IRC before 0.5.12 reflects user-supplied input from the R parameter without proper output encoding, aka XSS.
CVE-2011-0050 1 Cgiirc 1 Cgi\ 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the nonjs interface (interfaces/nonjs.pm) in CGI:IRC before 0.5.10 allows remote attackers to inject arbitrary web script or HTML via the R parameter.
CVE-2006-2148 1 Cgiirc 1 Cgiirc 2024-02-04 7.5 HIGH N/A
Multiple buffer overflows in client.c in CGI:IRC (CGIIRC) before 0.5.8 might allow remote attackers to execute arbitrary code via (1) cookies or (2) the query string.