Vulnerabilities > CVE-2004-1216 - Remote vulnerability in Burut Kreed 1.5

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
burut
exploit available

Summary

The scripts that handle players in Kreed 1.05 and earlier allow remote attackers to cause a denial of service (server freeze) via a long (1) nickname or (2) model type, which generates dialog boxes on the server that must be manually handled before the server continues the game.

Vulnerable Configurations

Part Description Count
Application
Burut
1

Exploit-Db

descriptionKreed <= 1.05 Format String and Denial of Service Exploit. CVE-2004-1214,CVE-2004-1215,CVE-2004-1216. Dos exploit for windows platform
idEDB-ID:672
last seen2016-01-31
modified2004-12-02
published2004-12-02
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/672/
titleKreed <= 1.05 Format String and Denial of Service Exploit