← Back

Mirc

mirc

Vendor: Mirc • 7 CVEs

CVEs (7)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mirc
1Mirc
Nov 21, 2024
Jan 23, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.
1Mirc
1Mirc
Nov 21, 2024
Jan 21, 2020
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
1Mirc
1Mirc
Nov 21, 2024
Feb 18, 2019
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Explo...Show more
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Exploitation depends on browser-specific URI handling (Chrome is not exploitable).Show less
1Mirc
1Mirc
Apr 23, 2026
Oct 6, 2008
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.
1Mirc
1Mirc
Apr 23, 2026
Aug 18, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
1Mirc
1Mirc
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.
1Mirc
1Mirc
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.