Vulnerabilities > Battlefront

DATE CVE VULNERABILITY TITLE RISK
2007-10-08 CVE-2007-5264 Information Exposure vulnerability in Battlefront Dropteam
Battlefront Dropteam 1.3.3 and earlier sends the client's online account name and password to the game server, which allows malicious game servers to steal account information.
network
low complexity
battlefront CWE-200
5.0
2007-10-08 CVE-2007-5263 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Battlefront Dropteam
Multiple buffer overflows in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbitrary code via (1) a crafted "0x5c" packet or (2) many 32-bit numbers in a "0x18" packet, or cause a denial of service (crash) via (3) a large "0x4b" packet.
network
low complexity
battlefront CWE-119
7.5
2007-10-08 CVE-2007-5262 USE of Externally-Controlled Format String vulnerability in Battlefront Dropteam
Multiple format string vulnerabilities in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbitrary code via format string specifiers in the (1) username, (2) password, and (3) nickname fields in a "0x01" packet.
network
low complexity
battlefront CWE-134
7.5