CVE-2008-2841
Microsoft Internet Explorer < 2.8.7b - Code Injection
Title source: ruleDescription
Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute arbitrary commands via the --command parameter in an ircs:// URI.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by securfrog · htmlremotewindows
https://www.exploit-db.com/exploits/5795
References (5)
Scores
EPSS
0.3125
EPSS Percentile
96.8%
Details
CWE
CWE-94
Status
published
Products (2)
microsoft/internet_explorer
xchat/xchat
< 2.8.7b
Published
Jun 24, 2008
Tracked Since
Feb 18, 2026