Vulnerabilities > CVE-2006-2393 - Denial-Of-Service vulnerability in Empire Server Empire Server 4.3.0/4.3.2

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
empire-server
exploit available

Summary

The client_cmd function in Empire 4.3.2 and earlier allows remote attackers to cause a denial of service (application crash) by causing long text strings to be appended to the player->client buffer, which causes an invalid memory access.

Vulnerable Configurations

Part Description Count
Application
Empire_Server
2

Exploit-Db

descriptionEmpire. CVE-2006-2393. Dos exploit for windows platform
idEDB-ID:1782
last seen2016-01-31
modified2006-05-14
published2006-05-14
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/1782/
titleEmpire <= 4.3.2 - strncat Denial of Service Exploit