6 results (0.003 seconds)

CVSS: 6.5EPSS: 0%CPEs: 7EXPL: 1

12 Nov 2019 — It is possible to cause a DoS condition by causing the server to crash in alien-arena 7.33 by supplying various invalid parameters to the download command. Es posible causar una condición DoS causando que el servidor se bloquee en alien-arena versión 7.33, al proporcionar varios parámetros no válidos al comando de descarga. • https://access.redhat.com/security/cve/cve-2010-3439 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 15%CPEs: 1EXPL: 2

08 Sep 2007 — Format string vulnerability in the safe_bprintf function in acesrc/acebot_cmds.c in Alien Arena 2007 6.10 and earlier allows remote attackers to cause a denial of service (daemon crash) via format string specifiers in a nickname. Vulnerabilidad de formato de cadena en la función safe_bprintf en acesrc/acebot_cmds.c de Alien Arena 2007 6.10 y versiones anteriores permite a atacantes remotos provocar una denegación de servicio (caída de demonio) mediante especificadores de cadena en un nombre de pila (nicknam... • https://www.exploit-db.com/exploits/30566 • CWE-134: Use of Externally-Controlled Format String •

CVSS: 7.5EPSS: 2%CPEs: 1EXPL: 1

08 Sep 2007 — Alien Arena 2007 6.10 and earlier allows remote attackers to cause a denial of service (client disconnect) by sending a client_connect command in a forged packet from the server to a client. NOTE: client IP addresses are available via product-specific queries. Alien Arena 2007 6.10 y versiones anteriores permite a atacantes remotos provocar una denegación de servicio (desconexión de cliente) al enviar un comando client_connect en un paquete falsificado del servidor al cliente. NOTA: las direcciones IP clien... • http://aluigi.altervista.org/adv/aa2k7x-adv.txt • CWE-20: Improper Input Validation •

CVSS: 9.8EPSS: 4%CPEs: 1EXPL: 2

10 Mar 2006 — Format string vulnerability in the safe_cprintf function in acebot_cmds.c in Alien Arena 2006 Gold Edition 5.00 allows remote attackers (possibly authenticated) to execute arbitrary code via unspecified vectors when the server sends crafted messages to the clients. • https://www.exploit-db.com/exploits/1564 •

CVSS: 9.8EPSS: 8%CPEs: 1EXPL: 2

10 Mar 2006 — Stack-based buffer overflow in the Cmd_Say_f function in g_cmds.c in Alien Arena 2006 Gold Edition 5.00 allows remote attackers (possibly authenticated) to execute arbitrary code by sending a long message to the server. • https://www.exploit-db.com/exploits/1564 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 2

10 Mar 2006 — The Com_sprintf function in q_shared.c in Alien Arena 2006 Gold Edition 5.00 does not properly NULL terminate certain long strings, which allows remote attackers (possibly authenticated) to cause a denial of service (application crash) via a long skin, weapon, or model name. • https://www.exploit-db.com/exploits/1564 •