5

CVE-2007-4755

Exploit
Alien Arena 2007 6.10 and earlier allows remote attackers to cause a denial of service (client disconnect) by sending a client_connect command in a forged packet from the server to a client.  NOTE: client IP addresses are available via product-specific queries.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cor EntertainmentAlien Arena 2007 Version <= 6.10
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.2% 0.802
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://aluigi.altervista.org/adv/aa2k7x-adv.txt
http://archives.neohapsis.com/archives/fulldisclosure/2007-09/0049.html
http://secunia.com/advisories/26819
http://securityreason.com/securityalert/3105
http://www.quakesrc.org/forums/viewtopic.php?t=6843&start=1
http://www.securityfocus.com/archive/1/478628/100/0/threaded
http://www.securityfocus.com/bid/25559
Exploit
http://www.vupen.com/english/advisories/2007/3169
http://osvdb.org/40508
https://exchange.xforce.ibmcloud.com/vulnerabilities/36465