CVE-2010-2075
60Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 84%
de la publicación al arma0 días
Publicada en NVD15 jun
1ª PoC13 jun
metasploit12 jun
probabilidad de explotación
84%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
10 exploit(s) público(s)
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands.
Productos afectados
n/a · n/aPoCs públicas encontradas — 10✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/13853exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/16922githubgithub.com/MFernstrom/OffensivePascal-CVE-2010-2075★ 2githubgithub.com/Tc-XoNoR/CVE-2010-2075★ 1githubgithub.com/FredBrave/CVE-2010-2075-UnrealIRCd-3.2.8.1★ 1githubgithub.com/earthbendergara/unrealircd3.2.8.1-local-exploit★ 0githubgithub.com/chancej715/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution★ 0githubgithub.com/JoseLRC97/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution★ 0githubgithub.com/mishaqdev/cve-2010-2075-analysis★ 0cve_referencewww.exploit-db.com/exploits/13853no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
Referencias
http://osvdb.org/65445http://seclists.org/fulldisclosure/2010/Jun/277http://seclists.org/fulldisclosure/2010/Jun/284http://secunia.com/advisories/40169http://security.gentoo.org/glsa/glsa-201006-21.xmlhttp://www.exploit-db.com/exploits/13853http://www.openwall.com/lists/oss-security/2010/06/14/11http://www.securityfocus.com/bid/40820http://www.unrealircd.com/txt/unrealsecadvisory.20100612.txthttp://www.vupen.com/english/advisories/2010/1437