CVE-2007-4399
CVE-2007-4399
CRLF injection vulnerability in the xmms.bx 1.0 script for BitchX allows user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065227.htmlhttp://osvdb.org/37481http://secunia.com/advisories/26489http://securityreason.com/securityalert/3036https://exchange.xforce.ibmcloud.com/vulnerabilities/35985http://wouter.coekaerts.be/site/security/nowplayinghttp://www.securityfocus.com/archive/1/476283/100/0/threadedhttp://www.securityfocus.com/bid/25281