First published: Thu Sep 25 2008(Updated: )
Directory traversal vulnerability in ImageServer (aka UTImageServer) in WebAdmin before 1.7 for Epic Games Unreal Tournament 3 (UT3) 1.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Unreal Tournament | =1.3-build_3601 | |
Unreal Tournament | =1.3-build_3601 | |
Unreal Tournament | =1.3-build_3614 | |
Unreal Tournament | =1.3-build_3614 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4243 is considered a high severity vulnerability due to its potential for remote exploitation.
To fix CVE-2008-4243, update WebAdmin to version 1.7 or later, which addresses the directory traversal vulnerability.
CVE-2008-4243 affects Unreal Tournament 3 version 1.3 builds 3601 and 3614 on both Linux and Windows platforms.
CVE-2008-4243 can be exploited through directory traversal attacks that allow remote attackers to read arbitrary files.
Players and administrators of Unreal Tournament 3 who run vulnerable versions of WebAdmin can be impacted by CVE-2008-4243.