CVE-2010-2452

EUVD-2010-2461
Directory traversal vulnerability in the DCC functionality in KVIrc 3.4 and 4.0 allows remote attackers to overwrite arbitrary files via unknown vectors.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
Affected Products (NVD)
VendorProductVersion
kvirckvirc
3.4.0
kvirckvirc
4.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
kvirc
bookworm
4:5.0.0+dfsg-6
fixed
bullseye
4:5.0.0+dfsg-5
fixed
sid
4:5.2.6-1
fixed
trixie
4:5.2.6-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
kvirc
dapper
not-affected
hardy
not-affected
jaunty
Fixed 4:4.0.0~svn3039-0ubuntu2.1
released
karmic
Fixed 4:4.0.0~svn3240-1ubuntu0.1
released
lucid
Fixed 4:4.0.0~svn3900+rc2-1ubuntu0.1
released