VYPR

Quake Ii Server Windows

Sign in to watch

by Id Software

CVEs (1)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2004-25940.000.01Dec 31, 2004Absolute path traversal vulnerability in Quake II server before R1Q2 on Windows, as used in multiple products, allows remote attackers to read arbitrary files via a "\/" in a pathname argument, as demonstrated by "download \/server.cfg".