Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
worldofpadman world of padman vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-3012
The ioQuake3 engine, as used in World of Padman 1.2 and previous versions, Tremulous 1.1.0, and ioUrbanTerror 2007-12-20, does not check for dangerous file extensions before writing to the quake3 directory, which allows remote malicious users to execute arbitrary code via a craft...
Worldofpadman World Of Padman
Ioquake3 Ioquake3 Engine
Tremulous Tremulous 1.1.0
Urbanterror Iourbanterror 2007-12-20
NA
CVE-2011-2764
The FS_CheckFilenameIsNotExecutable function in qcommon/files.c in the ioQuake3 engine 1.36 and previous versions, as used in World of Padman, Smokin' Guns, OpenArena, Tremulous, and ioUrbanTerror, does not properly determine dangerous file extensions, which allows remote ma...
Ioquake3 Ioquake3 Engine 1.36
Worldofpadman World Of Padman
Tremulous Tremulous
Urbanterror Iourbanterror
Ioquake3 Ioquake3 Engine
Smokin-guns Smokin\\' Guns
Openarena Openarena
NA
CVE-2011-1412
sys/sys_unix.c in the ioQuake3 engine on Unix and Linux, as used in World of Padman 1.5.x prior to 1.5.1.1 and OpenArena 0.8.x-15 and 0.8.x-16, allows remote game servers to execute arbitrary commands via shell metacharacters in a long fs_game variable.
Ioquake3 Ioquake3 Engine
Worldofpadman World Of Padman 1.5
Openarena Openarena 0.8.x-15
Openarena Openarena 0.8.x-16
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started