Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Suschman

#21688of 53,624
11Total CVSS
Vulnerabilities · 2
Low
1
High
1
PT-2019-6548
7.5
2019-11-12
Znc · Znc · CVE-2010-2488
**Name of the Vulnerable Software and Affected Versions** ZNC versions prior to 0.092 **Description** A NULL pointer dereference issue occurs due to traffic stats when there are unauthenticated connections. **Recommendations** For versions prior to 0.092, update to version 0.092 or later to resolve the issue.
PT-2010-4026
3.5
2010-07-12
Znc · Znc · CVE-2010-2448
**Name of the Vulnerable Software and Affected Versions** ZNC versions prior to 0.092 **Description** The issue allows remote authenticated users to cause a denial of service by requesting traffic statistics when there is an active unauthenticated connection. This triggers a NULL pointer dereference, which can be demonstrated using a traffic link in the web administration pages or the traffic command in the /znc shell. **Recommendations** For versions prior to 0.092, update to version 0.092 or later to resolve the issue. As a temporary workaround, consider restricting access to traffic statistics when there are active unauthenticated connections to minimize the risk of exploitation.