|
|

CVE Reference: CVE-2007-4397 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2007-4397 |
|
|
Description: Multiple CRLF injection vulnerabilities in (1) xmms-thing 1.0, (2) XMMS Remote Control Script 1.07, (3) Disrok 1.0, (4) a2x 0.0.1, (5) Another xmms-info script 1.0, (6) XChat-XMMS 0.8.1, and other unspecified scripts for XChat allow user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/35985 SREASON http://securityreason.com/securityalert/3036 SAID Secunia Advisory: SA26487 Secunia Advisory: SA26486 Secunia Advisory: SA26484 Secunia Advisory: SA26485 Secunia Advisory: SA26454 Secunia Advisory: SA26455 Secunia Advisory: SA26488 OSVDB 39574 39575 MISC http://wouter.coekaerts.be/site/security/nowplaying FULLDISC http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065227.html BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/476283/100/0/threaded BID 25281 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |