header-logo
Suggest Exploit
vendor:
Unreal Engine Games
by:
Unknown
5
CVSS
MEDIUM
Directory Traversal
22
CWE
Product Name: Unreal Engine Games
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested: Not specified
Unknown

Directory Traversal Vulnerability in Unreal Engine Games

A directory traversal vulnerability has been discovered in several games that use certain versions of the Unreal Engine. Attackers can exploit this vulnerability to navigate outside of the game's installation directory by utilizing directory traversal sequences. By referencing specific files, it is also possible to cause the game client to crash.

Mitigation:

To mitigate this vulnerability, it is recommended to apply the latest patches or updates provided by the game developers. Additionally, it is advised to avoid accessing or downloading game files from untrusted sources.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/6775/info

It has been reported that a directory traversal vulnerability exists in several games using some versions of the Unreal Engine.

It is possible for attackers to traverse outside of the game's installation directory using directory traversal sequences.

If the attacker refers to specific files it may be possible to cause the vulnerable game client to crash.

unreal://\directory\file
unreal://..\..\directory\file