Vulnerability Details CVE-2007-4406
ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after a join from a server with an older timestamp (TS), which allows remote attackers to gain control of a channel during a split.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 72.6%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-4406
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.01
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.02
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.03
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.04