Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
id software quake ii server 3.20 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-2592
Quake II server before R1Q2, as used in multiple products, allows remote malicious users to cause a denial of service (application crash) via a modified client that asks the server to send data stored at a negative array offset, which is not handled when processing Configstrings ...
Id Software Quake Ii Server 3.21
Id Software Quake Ii Server 3.20
1 EDB exploit
NA
CVE-2004-2593
Buffer overflow in command-packet processing of Quake II server before R1Q2, as used in multiple products, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a packet with a long cmd_args buffer.
Id Software Quake Ii Server 3.21
Id Software Quake Ii Server 3.20
NA
CVE-2004-2596
Quake II server before R1Q2, as used in multiple products, allows remote malicious users to cause a denial of service (exhaustion of connection slots) via a large number of connections from the same IP address.
Id Software Quake Ii Server 3.21
Id Software Quake Ii Server 3.20
NA
CVE-2004-2597
Quake II server before R1Q2, as used in multiple products, allows remote malicious users to bypass IP-based access control rules via a userinfo string that already contains an "ip" key/value pair but is also long enough to cause a new key/value pair to be truncated, whi...
Id Software Quake Ii Server 3.21
Id Software Quake Ii Server 3.20
NA
CVE-2004-2594
Absolute path traversal vulnerability in Quake II server before R1Q2 on Windows, as used in multiple products, allows remote malicious users to read arbitrary files via a "\/" in a pathname argument, as demonstrated by "download \/server.cfg".
Id Software Quake Ii Server Windows 3.21
Id Software Quake Ii Server Windows 3.20
NA
CVE-2004-2595
Absolute path traversal vulnerability in Quake II server before R1Q2 on Linux, as used in multiple products, allows remote malicious users to cause a denial of service (application crash) via a download command with a full pathname for a directory in the argument, which causes th...
Id Software Quake Ii Server Linux 3.20
Id Software Quake Ii Server Linux 3.21
NA
CVE-2002-0770
Quake 2 (Q2) server 3.20 and 3.21 allows remote malicious users to obtain sensitive server cvar variables, obtain directory listings, and execute Q2 server admin commands via a client that does not expand "$" macros, which causes the server to expand the macros and leak...
Id Software Quake 2i Server 3.21
Id Software Quake 2i Server 3.20
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5834
CVE-2024-30100
CVE-2024-4577
physical
dos
CVE-2024-30099
CVE-2024-27801
CVE-2024-32146
logic flaw
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started