Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0984

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2002-0984
Last Modified 10 Sep 2008 03:13:29
Published 24 Sep 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0984

Summary

The IRC script included in Light 2.7.x before 2.7.30p5, and 2.8.x before 2.8pre10, running EPIC allows remote attackers to execute arbitrary code if the user joins a channel whose topic includes EPIC4 code.

Vulnerable Systems

Application

  • Light 2.7.30p4

  • Light 2.8 Pre9


References

DEBIAN - DSA-156

BID - 5555

XF - light-channel-execute-script(9943)

BUGTRAQ - 20020822 Light Security Advisory: Remotely-exploitable code execution


Last Updated: 27 May 2016 10:37:08