COMMAND
pIRCh
SYSTEMS AFFECTED
Those using pIRCh
PROBLEM
REwT found following. The IRC (Internet Relay Chat) Client, pIRCh
automatically assigns your main pirch directory to where DCC
downloads are sent. You can replace someone's script file with a
malicious one, therefore recieving control over an ignorant irc
tenant. This can be done by sending a replacement file via DCC to
the user. Most people could tell the user that it was something
cool, and they would accept it. This was tested on pIRCh32 0.92.
SOLUTION
In the newest version of pIRCh it directs all dcc downloads to a
directory off of the main directory named 'downloads'. However on
all but the latest this information is correct. You can fix that
by simply going to Tools.. then Preferences. Flip to the DCC tab
and change your default DCC recieve directory to something that is
not the main pIRCh directory.