CVE-2008-2841

Microsoft Internet Explorer < 2.8.7b - Code Injection

Title source: rule

Description

Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute arbitrary commands via the --command parameter in an ircs:// URI.

Exploits (1)

exploitdb WORKING POC VERIFIED
by securfrog · htmlremotewindows
https://www.exploit-db.com/exploits/5795

Scores

EPSS 0.3125
EPSS Percentile 96.8%

Details

CWE
CWE-94
Status published
Products (2)
microsoft/internet_explorer
xchat/xchat < 2.8.7b
Published Jun 24, 2008
Tracked Since Feb 18, 2026