CVE-2000-0787

Current Description

IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.

Basic Data

PublishedOctober 20, 2000
Last ModifiedSeptember 10, 2008
Assignercve@mitre.org
Data TypeCVE
Data FormatMITRE
Data Version4.0
Problem TypeNVD-CWE-Other
CVE Data Version4.0

Base Metric V2

CVSS 2 - Version2.0
CVSS 2 - Vector StringAV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS 2 - Access VectorNETWORK
CVSS 2 - Access ComplexityLOW
CVSS 2 - AuthenticationNONE
CVSS 2 - Confidentiality ImpactPARTIAL
CVSS 2 - Availability ImpactPARTIAL
CVSS 2 - Base Score7.5
SeverityHIGH
Exploitability Score10.0
Impact Score6.4
Obtain All Privilegefalse
Obtain User Privilegefalse
Obtain Other Privilegetrue

Base Metric V3

No data provided.

Configurations

  • OR - Configuration 1
    Cpe VersionPartVendorProductVersionUpdateEditionLanguageSW EditionTarget SWTarget HWOtherVersion Start IncludingVersion End IncludingVersion Start ExcludingVersion End Excluding
    2.3ApplicationXchatXchat1.2.1*******
    2.3ApplicationXchatXchat1.3.9*******
    2.3ApplicationXchatXchat1.3.10*******
    2.3ApplicationXchatXchat1.3.11*******
    2.3ApplicationXchatXchat1.3.12*******
    2.3ApplicationXchatXchat1.3.13*******
    2.3ApplicationXchatXchat1.4*******
    2.3ApplicationXchatXchat1.4.1*******
    2.3ApplicationXchatXchat1.4.2*******
    2.3ApplicationXchatXchat1.5.6*******
    2.3ApplicationXchatXchat1.5.xdev*******

Vulnerable Software List

VendorProductVersions
Xchat Xchat 1.2.1, 1.3.10, 1.3.11, 1.3.12, 1.3.13, 1.3.9, 1.4, 1.4.1, 1.4.2, 1.5.6, 1.5.xdev

References

NameSourceURLTags
20000817 XChat URL handler vulnerabiltyhttp://archives.neohapsis.com/archives/bugtraq/2000-08/0215.htmlBUGTRAQVendor Advisory
20000824 MDKSA-2000:039 - xchat updatehttp://archives.neohapsis.com/archives/bugtraq/2000-08/0301.htmlBUGTRAQVendor Advisory
20000825 Conectiva Linux Security Announcement - xchathttp://archives.neohapsis.com/archives/bugtraq/2000-08/0305.htmlBUGTRAQVendor Advisory
RHSA-2000:055http://www.redhat.com/support/errata/RHSA-2000-055.htmlREDHAT
1601http://www.securityfocus.com/bid/1601BIDVendor Advisory