vendor:
Half-Life Dedicated Server
by:
SecurityFocus
7.5
CVSS
HIGH
Information Disclosure and Denial of Service
N/A
CWE
Product Name: Half-Life Dedicated Server
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002
Half-Life Dedicated Server Information Disclosure and Denial of Service Vulnerability
Half-Life dedicated server is prone to an information disclosure vulnerability and denial of service vulnerability. This issue presents itself due to a flaw in download functionality that is provided by the Half-Life dedicated server. A malicious attacker may exploit this functionality to download any file from the root folder of the current running game type, or from the valve folder. Successful exploitation of this issue may result in the disclosure of sensitive information, or denial of service to legitimate users.
Mitigation:
N/A