CVE-2019-12816 PUBLISHED

Modules.cpp in ZNC before 1.7.4-rc1 allows remote authenticated non-admin users to escalate privileges and execute arbitrary code by loading a module with a crafted name.

EPSS 2.71% · 85.8th percentile

Risk Scores

EPSS Score
2.71%
85.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSznc0, 1.0-5, 1.0-5build1
Ubuntu:18.04:LTSznc1.6.6-1ubuntu0.1, 0, 1.6.5-2build2
Ubuntu:16.04:LTSznc1.6.3-1, 1.6.3-1ubuntu0.1, 0

Timeline

References

Open in Interactive Console →