Vulnerabilities (CVE)

Filtered by vendor The Ignition Project Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-2431 1 The Ignition Project 1 Ignitionserver 2024-02-04 7.5 HIGH N/A
Unknown vulnerability in The Ignition Project ignitionServer 0.1.2 through 0.3.1, with the linking service enabled, allows remote attackers to bypass authentication.
CVE-2005-1640 1 The Ignition Project 1 Ignitionserver 2024-02-04 7.5 HIGH N/A
mod_channel.bas in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not properly verify whether a host has the owner privileges required to delete IRC channel access entries, which allows remote attackers to bypass intended restrictions.
CVE-2005-1641 1 The Ignition Project 1 Ignitionserver 2024-02-04 2.1 LOW N/A
mod_channel in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not allow protected operators to access channels that have been locked out by a key, which allows IRC users to cause a denial of service.
CVE-2004-2553 1 The Ignition Project 1 Ignitionserver 2024-02-04 6.0 MEDIUM N/A
The Ignition Project ignitionServer 0.1.2 through 0.1.2-R2 allows remote authenticated users with local IRC operator privileges to obtain global IRC operator privileges by using the unofficial umode command with the +ORD argument.