CVE-2005-0129

Konversation 0.15 - Remote Code Execution via Quick Buttons Channel Name Expansion

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-0129. PoCs published by [email protected].

AI-analyzed exploit summary The writeup describes multiple vulnerabilities in Konversation IRC client, including command injection via channel names and design flaws in QuickButtons and quick connect dialogue. These issues can lead to arbitrary command execution and denial of service.

Description

The Quick Buttons feature in Konversation 0.15 allows remote attackers to execute certain IRC commands via a channel name containing "%" variables, which are recursively expanded by the Server::parseWildcards function when the Part Button is selected.

Exploits (1)

exploitdb WRITEUP VERIFIED
by [email protected] · textremotelinux
https://www.exploit-db.com/exploits/25054

The writeup describes multiple vulnerabilities in Konversation IRC client, including command injection via channel names and design flaws in QuickButtons and quick connect dialogue. These issues can lead to arbitrary command execution and denial of service.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Konversation IRC client (version not specified)
No auth needed
Prerequisites: User interaction (joining a malicious channel or executing specific commands)
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (9)

Core 9
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/13919
Various Sources x_refsource_confirm
http://www.kde.org/info/security/advisory-20050121-1.txt
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/19025
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12312
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/13989
Third Party Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200501-34.xml
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=110626383310742&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1012972

Scores

EPSS 0.1032
EPSS Percentile 95.2%

Details

Status published
Products (1)
berlios/konversation 0.15
Published Apr 14, 2005
Tracked Since Feb 18, 2026