Bugtraq mailing list archives

mIRC allows password protection to be bypassed


From: scalar <scalar () SHADOWVX COM>
Date: Thu, 25 Jan 2001 17:35:56 -0600

Hello,
     I have found a hole in mIRC (a popular IRC client for the Windows platform) that allows a malicious user to 
subvert the optional password on the mIRC.exe binary. Full details are in the attached advisory. The advisory is also 
available at http://chronix.shadowvx.com/advisories/scalar-01-02.txt

thanks,

scalar

Attachment: scalar-01-02.txt
Description:


Current thread: