← Back

Mirc

mirc

9 CVEs • 3 products

Products (3)

Click to collapse
Toggle

CVEs (9)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mirc
1Mirc
Nov 21, 2024
Jan 23, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.
1Mirc
1Mirc
Nov 21, 2024
Jan 21, 2020
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
1Mirc
1Mirc
Nov 21, 2024
Feb 18, 2019
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Explo...Show more
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Exploitation depends on browser-specific URI handling (Chrome is not exploitable).Show less
1Mirc
1Mirc
Apr 23, 2026
Oct 6, 2008
N/A· v4
N/A· v3
9.3 HIGH· v2
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.
1Mirc
1Plug In For Winamp
Apr 23, 2026
Aug 18, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The mIRC Control Plug-in for Winamp allows user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
1Mirc
1Mirc
Apr 23, 2026
Aug 18, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
1Mirc
1Advanced Integration Plugin
Apr 23, 2026
Aug 18, 2007
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in...Show more
Multiple CRLF injection vulnerabilities in the Advanced mIRC Integration Plugin and possibly other unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.Show less
1Mirc
1Mirc
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.
1Mirc
1Mirc
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.