Family: Misc. --> Category: infos
Unreal IRCd IP cloaking weakness Vulnerability Scan
Vulnerability Scan Summary
checks the version of the remote ircd
Detailed Explanation for this Vulnerability Test
The remote host is running Unreal IRCD, a popular IRC server.
The remote version of this server offers an 'IP cloaking' capability which
offers to hide the IP address of the users connected to the server, in
order to preserve their anonymity.
There is a design error in the algorithm used by the server which may
allow a possible hacker to guess the real IP address of another user of the server,
by reducing the number of tries to 2,000.
Solution : Upgrade to UnrealIRCD 3.2.1
Threat Level: Medium
Click HERE for more information and discussions on this network vulnerability scan.