CVE-2022-24976

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
14/02/2022
Last modified:
23/02/2022

Description

Atheme IRC Services before 7.2.12, when used in conjunction with InspIRCd, allows authentication bypass by ending an IRC handshake at a certain point during a challenge-response login sequence.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:atheme:atheme:*:*:*:*:*:*:*:* 7.2.0 (including) 7.2.12 (excluding)