| CVE-2006-2393 | | 0.04 | — | 0.11 | | May 16, 2006 | The client_cmd function in Empire 4.3.2 and earlier allows remote attackers to cause a denial of service (application crash) by causing long text strings to be appended to the player->client buffer, which causes an invalid memory access. |
| CVE-2008-3169 | | 0.00 | — | 0.03 | | Jul 14, 2008 | Multiple heap-based buffer overflows in Empire Server before 4.3.15 allow remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors, related to a "coordinate normalization bug." NOTE: some of these details are obtained from third party information. |
| CVE-2008-3168 | | 0.00 | — | 0.00 | | Jul 14, 2008 | The files utility in Empire Server before 4.3.15 discloses the world creation time, which makes it easier for attackers to determine the PRNG seed. |
| CVE-2006-1840 | | 0.00 | — | 0.01 | | Apr 19, 2006 | Multiple format string vulnerabilities in Empire Server before 4.3.1 allow attackers to cause a denial of service (crash) via the (1) load, (2) spy and (3) bomb functions. |