Vulnerabilities > CVE-2004-1500 - Remote Format String vulnerability in Monolith Lithtech Game Engine

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
local
low complexity
freeform-interactive
monolith-productions
exploit available

Summary

Format string vulnerability in the Lithtech engine, as used in multiple games, allows remote authenticated users to cause a denial of service (application crash) via format string specifiers in (1) a nickname or (2) a message.

Exploit-Db

descriptionMonolith Lithtech Game Engine Multiple Remote Format String Vulnerabilities. CVE-2004-1500. Remote exploits for multiple platform
idEDB-ID:24724
last seen2016-02-02
modified2004-11-05
published2004-11-05
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/24724/
titleMonolith Lithtech Game Engine Multiple Remote Format String Vulnerabilities