Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.12297
Category:Misc.
Title:Unreal IRCd IP cloaking weakness
Summary:NOSUMMARY
Description:Description:

The remote host is running Unreal IRCD, a popular IRC server.

The remote version of this server offers an 'IP cloaking' capability which
offers to hide the IP address of the users connected to the server, in
order to preserve their anonymity.

There is a design error in the algorithm used by the server which may
allow an attacker to guess the real IP address of another user of the server,
by reducing the number of tries to 2,000.

Solution : Upgrade to UnrealIRCD 3.2.1
Risk factor : Medium

Cross-Ref: BugTraq ID: 10663
Common Vulnerability Exposure (CVE) ID: CVE-2004-0679
http://www.securityfocus.com/bid/10663
Bugtraq: 20040705 unreal ircd ip cloaking subsystem vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=108904813003166&w=2
http://www.bandecon.com/advisory/unreal.txt
http://securityreason.com/securityalert/560
XForce ISS Database: unreal-ircd-information-disclosure(16610)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16610
CopyrightThis script is Copyright (C) 2003 Tenable Network Security

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.