CVE-2009-2658
znc - directory traversal
EPSS 0.96%
Description
Directory traversal vulnerability in ZNC before 0.072 allows remote attackers to overwrite arbitrary files via a crafted DCC SEND request.
How to fix CVE-2009-2658
To remediate CVE-2009-2658, upgrade the affected package to a fixed version below.
- Debian/znc—upgrade to 0.074-1 or later
- Debian/znc—upgrade to 0.045-3+etch3 or later
Is CVE-2009-2658 being exploited?
Low — EPSS is 1.0%, meaning exploitation activity has not been observed at scale.
Affected packages (2)
- from 0, < 0.074-1
- from 0, < 0.045-3+etch3