CVE-2000-0303

CVSS 2.0 Score 6.4 of 10 (medium)

Details

Published May 3, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0303 is a vulnerability affecting Quake3 Arena where malicious server operators can exploit a dot dot (..) attack to read or modify files on a client's system. This issue allows an attacker to gain unauthorized access to sensitive information or make unintended changes. The vulnerability existed due to insufficient input validation, making it possible for an attacker to manipulate file requests and retrieve or modify data outside the intended directory. This posed a significant risk to users who joined untrusted game servers, potentially leading to data theft or unintended software modifications.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share