PT-2018-2203 · Tim · Tim 1531 Irc
Published
2018-12-11
·
Updated
2019-10-09
·
CVE-2018-13816
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TIM 1531 IRC versions prior to V2.0
Description
A vulnerability has been identified due to the absence of proper authentication on port 102/tcp. Successful exploitation requires an attacker to send packets to this port, with no user interaction or privileges needed. The issue allows an attacker to perform arbitrary administrative operations. At the time of advisory publication, no public exploitation of this vulnerability was known.
Recommendations
For versions prior to V2.0, update to version V2.0 or later to resolve the issue. As a temporary workaround, consider restricting access to port 102/tcp to minimize the risk of exploitation.
Fix
Missing Authentication
Improper Access Control
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Tim 1531 Irc