Vulnerabilities > Activision > Medium

DATE CVE VULNERABILITY TITLE RISK
2013-01-22 CVE-2012-4918 Improper Input Validation vulnerability in Activision Call of Duty Elite 2.0.1
Call of Duty Elite for iOS 2.0.1 does not properly validate the server SSL certificate, which allows remote attackers to obtain sensitive information via a Man-in-the-Middle (MITM) attack.
network
activision CWE-20
5.8
2008-05-07 CVE-2008-2106 Improper Input Validation vulnerability in Activision Call of Duty 4
Call of Duty 4 (CoD4) 1.5 and earlier allows remote authenticated users to cause a denial of service (crash) via a type 7 stats packet, which triggers a memcpy with a negative value.
network
low complexity
activision CWE-20
6.8
2005-05-02 CVE-2005-0983 Denial of Service vulnerability in Quake 3 Engine Message
Quake 3 engine, as used in multiple games, allows remote attackers to cause a denial of service (client disconnect) via a long message, which is not properly truncated and causes the engine to process the remaining data as if it were network data.
5.0
2004-09-05 CVE-2004-1664 Remote Denial of Service vulnerability in Call of Duty
Call of Duty 1.4 and earlier allows remote attackers to cause a denial of service (game end) via a large (1) query or (2) reply packet, which is not properly handled by the buffer overflow protection mechanism.
network
low complexity
activision
5.0