CVE-2002-0231 describes a buffer overflow vulnerability in mIRC versions 5.91 and earlier. A remote server can exploit this flaw by sending a specially crafted, long nickname, leading to arbitrary code execution on the client's system. This vulnerability has a CVSS score of 7.5, indicating high severity, as it can be exploited remotely with low complexity and potentially impact confidentiality, integrity, and availability. While not listed on the KEV catalog or Hot List, an ExploitDB entry exists (EDB-21274) detailing a buffer overflow for various mIRC versions, though there is no evidence of active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.1aCPE matchmatch criteria | cpe:2.3:a:khaled_mardam-bey:mirc:2.1a:*:*:*:*:*:*:* | ||
2.3aCPE matchmatch criteria | cpe:2.3:a:khaled_mardam-bey:mirc:2.3a:*:*:*:*:*:*:* | ||
2.4CPE matchmatch criteria | cpe:2.3:a:khaled_mardam-bey:mirc:2.4:*:*:*:*:*:*:* | ||
2.4aCPE matchmatch criteria | cpe:2.3:a:khaled_mardam-bey:mirc:2.4a:*:*:*:*:*:*:* | ||
2.5aCPE matchmatch criteria | cpe:2.3:a:khaled_mardam-bey:mirc:2.5a:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.