Crysis 1.21 and previous versions allows remote malicious users to obtain sensitive player information such as real IP addresses by sending a keyexchange packet without a previous join packet, which causes Crysis to send a disconnect packet that includes unrelated log information.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ea crysis 1.2 |
||
ea crysis 1.1 |
||
ea crysis |