CVE-2010-2075

Unrealircd - Improper Input Validation

Title source: rule

Description

UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands.

Exploits (9)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/16922
exploitdb WORKING POC VERIFIED
by anonymous · perlremotelinux
https://www.exploit-db.com/exploits/13853
nomisec WORKING POC 2 stars
by MFernstrom · poc
https://github.com/MFernstrom/OffensivePascal-CVE-2010-2075
nomisec WORKING POC 1 stars
by FredBrave · poc
https://github.com/FredBrave/CVE-2010-2075-UnrealIRCd-3.2.8.1
nomisec WORKING POC
by Tc-XoNoR · poc
https://github.com/Tc-XoNoR/CVE-2010-2075
nomisec WORKING POC
by earthbendergara · poc
https://github.com/earthbendergara/unrealircd3.2.8.1-local-exploit
nomisec WORKING POC
by JoseLRC97 · poc
https://github.com/JoseLRC97/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution
nomisec WORKING POC
by chancej715 · poc
https://github.com/chancej715/UnrealIRCd-3.2.8.1-Backdoor-Command-Execution
metasploit WORKING POC EXCELLENT
by hdm · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/irc/unreal_ircd_3281_backdoor.rb

Scores

EPSS 0.8769
EPSS Percentile 99.5%

Details

CWE
CWE-20
Status published
Products (1)
unrealircd/unrealircd 3.2.8.1
Published Jun 15, 2010
Tracked Since Feb 18, 2026