Quake3 Arena allows malicious server operators to read or modify files on a client via a dot dot (..) attack.
References
Link | Resource |
---|---|
http://www.osvdb.org/7531 | |
http://www.quake3arena.com/news/index.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/1169 | |
http://xforce.iss.net/alerts/advise50.php3 |
Configurations
History
No history.
Information
Published : 2000-05-03 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2000-0303
Mitre link : CVE-2000-0303
CVE.ORG link : CVE-2000-0303
JSON object : View
Products Affected
id_software
- quake_3_arena
CWE