CVE-2000-0303
CVSS 2.0 Score 6.4 of 10 (medium)
Details
Summary
CVE-2000-0303 is a vulnerability affecting Quake3 Arena where malicious server operators can exploit a dot dot (..) attack to read or modify files on a client's system. This issue allows an attacker to gain unauthorized access to sensitive information or make unintended changes. The vulnerability existed due to insufficient input validation, making it possible for an attacker to manipulate file requests and retrieve or modify data outside the intended directory. This posed a significant risk to users who joined untrusted game servers, potentially leading to data theft or unintended software modifications.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- ID Software