UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November...
Vulnerability Description
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-2075
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.unrealircd.com/txt/unrealsecadvisory.20100612.txt
- http://www.vupen.com/english/advisories/2010/1437
- http://security.gentoo.org/glsa/glsa-201006-21.xml
- http://osvdb.org/65445
- http://www.openwall.com/lists/oss-security/2010/06/14/11
- http://www.exploit-db.com/exploits/13853
- http://secunia.com/advisories/40169
- http://seclists.org/fulldisclosure/2010/Jun/277
- http://www.securityfocus.com/bid/40820
- http://seclists.org/fulldisclosure/2010/Jun/284
More from unrealircd
View All →Affected Vendor
unrealircd
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.