Bnc is a narrowly scoped vendor with a focused product footprint centered on a single offering. The observed vulnerability disclosures cluster around issues classified as other or general categories, limiting the structural insight available to defenders at this time; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bnc over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2004-1052HIGH Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that conta | Mar 1, 2005 | 10.0 | 27 | NO | NO |
CVE-2004-1482HIGH The sbuf_getmsg function in BNC incorrectly handles backspace characters, which could allow remote attackers to bypass authentication and gain access to arbitrary scripts. | Dec 31, 2004 | 7.5 | 24 | NO | NO |
CVE-2004-2612HIGH BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users. | Dec 31, 2004 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bnc.
Media articles that mention a CVE ID that affects a product developed by Bnc — matched by CVE ID, not by vendor name.