7.5
CVSSv3

CVE-2023-38312

Published: 15/10/2023 Updated: 19/10/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A directory traversal vulnerability in Valve Counter-Strike 8684 allows a client (with remote control access to a game server) to read arbitrary files from the underlying server via the motdfile console variable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

valvesoftware counter-strike 8684

Github Repositories

Allows for arbitrary files to be read from the underlying server.

Counter-Strike Arbitrary File Read Allows for arbitrary files to be read from the underlying server Usage exec counter_strike_arbitrary_file_readcfg CVE-ID CVE-2023-38312 HackerOne Report hackeronecom/reports/1356454 License GNU General Public License v20