Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ed Kellett

#28053of 53,635
9.1Total CVSS
Vulnerabilities · 1
PT-2022-17023
9.1
2022-02-13
Unknown · Atheme Irc Services · CVE-2022-24976
**Name of the Vulnerable Software and Affected Versions** Atheme IRC Services versions prior to 7.2.12 **Description** The issue allows authentication bypass by ending an IRC handshake at a certain point during a challenge-response login sequence when Atheme IRC Services is used in conjunction with InspIRCd. **Recommendations** For versions prior to 7.2.12, update to version 7.2.12 or later to resolve the issue. As a temporary workaround, consider restricting access to the challenge-response login sequence to minimize the risk of exploitation.