Vulnerabilities > ZNC > ZNC > High

DATE CVE VULNERABILITY TITLE RISK
2019-06-15 CVE-2019-12816 Improper Input Validation vulnerability in ZNC
Modules.cpp in ZNC before 1.7.4-rc1 allows remote authenticated non-admin users to escalate privileges and execute arbitrary code by loading a module with a crafted name.
network
low complexity
znc CWE-20
8.8
2009-08-04 CVE-2009-2658 Path Traversal vulnerability in ZNC
Directory traversal vulnerability in ZNC before 0.072 allows remote attackers to overwrite arbitrary files via a crafted DCC SEND request.
network
low complexity
znc CWE-22
7.5