VendorsmIRCmircall versions
Vulnerabilities

mIRC Mirc

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2008-4449
Stack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.
Published 2008-10-06 · Modified
9.33 PoCEPSS 0.387
CVE-2003-1336
Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.
Published 2007-09-23 · Modified
9.32 PoCEPSS 0.357
CVE-2019-6453
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers. The attacker can specify an irc:// URI that loads an arbitrary .ini file from a UNC share pathname. Exploitation depends on browser-specific URI handling (Chrome is not exploitable).
Published 2019-02-18 · Modified
8.11 PoCEPSS 0.543
CVE-2008-7314
mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.
Published 2020-01-23 · Modified
7.5EPSS 0.013
CVE-2007-4402
Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the name of the song in a .mp3 file.
Published 2007-08-18 · Modified
6.8EPSS 0.032
CVE-2011-5282
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
Published 2020-01-21 · Modified
5.3EPSS 0.011
CVE-2003-1508
Buffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to cause a denial of service (crash) via a long filename.
Published 2007-10-25 · Modified
4.3EPSS 0.021