Re: Mirc 5.5 'DCC Server' hole

From: Sandro Jurado (devilat_private)
Date: Tue Jan 26 1999 - 08:40:49 PST

  • Next message: Nate Lawson: "Software Inertia"

    On 24 Jan 99, at 8:44, Spikeman wrote:
    
    > while talking with typo he gave me this mIRC bug as it says in the file #
    > bug description: mirc 5.5's newly introduced dcc server feature doesn't #
    > filter metachars(such as . and \) from sent filenames. this script fakes
    > the # sending of a harmless file and then puts malicious file in a wanted
    > # destination dir on the same harddrive (autostart dir is a good choice)
    >
    > If you have problems with the attchmnt i have the file at
    > http://spikeman.genocide2600.com/balu.pl
    
    As I see, this will only work if you have the mIRC DCCSERVER in ON.
    If not, you wont have a port 59 listening to DCCs.
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:31:11 PDT