Record summary

CVE-2007-3360 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.

Description

hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that receives and executes shell commands.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBBitchX 1.1-final - 'EXEC' Remote Command ExecutionExploitDB exploitby clarity_Not analyzed1 file
ExploitDB

PoC details

References

8