← Vulnerability feed

Vulnerability record · CVE-2008-7314 · published 23 January 2020

CVE-2008-7314: Mirc uncontrolled resource consumption vulnerability

Mirc · Mirc

mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.

7.5 CVSS 3.1 High EPSS 1.3% · top 29.7% CWE-400 · Uncontrolled resource consumption
7.5CVSS 3.1 base score, v2 5.0
1.3%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://www.mirc.com/news.html Release NotesVendor Advisory
https://www.mirc.com/versions.txt Release NotesVendor Advisory
http://www.mirc.com/news.html Release NotesVendor Advisory
https://www.mirc.com/versions.txt Release NotesVendor Advisory

Track CVE-2008-7314 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2008-4449Mirc memory buffer overflow vulnerabilityStack-based buffer overflow in mIRC 6.34 allows remote attackers to execute arbitrary code via a long hostname in a PRIVMSG message.EPSS 39%9.3CVE-2003-1336Mirc memory buffer overflow vulnerabilityBuffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.EPSS 36%8.1CVE-2019-6453mIRC URI handler argument injection enables remote command executionmIRC before 7.55 mishandles custom URI protocol handlers, allowing argument injection via an irc:// URI that points to an attacker-controlled .ini fi…EPSS 54%analysed6.8CVE-2007-4402Mirc vulnerabilityMultiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the '|' (pipe) shell metacharacter in the nam…EPSS 3.2%5.3CVE-2011-5282Mirc information exposure vulnerabilitymIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.EPSS 1.1%4.3CVE-2003-1508Mirc memory buffer overflow vulnerabilityBuffer overflow in mIRC 6.12, when the DCC get dialog window has been minimized and the user opens the minimized window, allows remote attackers to c…EPSS 2.1%7.5CVE-2026-28318SolarWinds Serv-U unauthenticated POST request denial of serviceSolarWinds Serv-U crashes when it receives a specially crafted POST request using Content-Encoding: deflate, and the crash occurs without authenticat…KEVEPSS 1.9%analysed7.5CVE-2026-45498Microsoft Defender antimalware platform uncontrolled resource consumption DoSCVE-2026-45498 is a denial of service flaw in the Microsoft Defender antimalware platform, classified as uncontrolled resource consumption (CWE-400).…KEVEPSS 1.3%analysed

Source: NIST National Vulnerability Database (record CVE-2008-7314), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.