CVE-2003-0650
Published Aug 27, 2003
Last updated 8 years ago
Overview
- Description
- Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade, possibly versions before 1.3e, allows remote attackers to overwrite arbitrary files and execute arbitrary code via .. (dot dot) sequences in filenames in a .APK (Zip) file.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:gamespy:arcade:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "77A968C7-60B2-4E0E-BF99-7DF8817EA299", "versionEndIncluding": "1.3e" } ], "operator": "OR" } ] } ]