Vulnerabilities > CVE-2005-1641 - Unspecified vulnerability in the Ignition Project Ignitionserver
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN the-ignition-project
nessus
Summary
mod_channel in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not allow protected operators to access channels that have been locked out by a key, which allows IRC users to cause a denial of service.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |
Nessus
NASL family | Misc. |
NASL id | IRCD_IGNITION_IRCOP_VULN2.NASL |
description | The remote host is running a version of the IgnitionServer IRC service which contains a bug in the way it handles locked channels, as well as a design error regarding the access validation checks. An attacker may use this flaw to block an IRC operator out of a protected channel. A host may use this flaw to delete an entry created by a owner. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 18291 |
published | 2005-05-17 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/18291 |
title | ignitionServer < 0.3.6-P1 Multiple Vulnerabilities |
code |
|