mod_channel.bas in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not properly verify whether a host has the owner privileges required to delete IRC channel access entries, which allows remote attackers to bypass intended restrictions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ignitionserver | The_ignition_project | 0.3.0 (including) | 0.3.0 (including) |
Ignitionserver | The_ignition_project | 0.3.1 (including) | 0.3.1 (including) |
Ignitionserver | The_ignition_project | 0.3.2 (including) | 0.3.2 (including) |
Ignitionserver | The_ignition_project | 0.3.3 (including) | 0.3.3 (including) |
Ignitionserver | The_ignition_project | 0.3.4 (including) | 0.3.4 (including) |
Ignitionserver | The_ignition_project | 0.3.5 (including) | 0.3.5 (including) |
Ignitionserver | The_ignition_project | 0.3.6 (including) | 0.3.6 (including) |