Vulnerabilities > Even Balance

DATE CVE VULNERABILITY TITLE RISK
2006-05-25 CVE-2006-2587 Remote Buffer Overflow vulnerability in Even Balance Punkbuster 1.228
Buffer overflow in the WebTool HTTP server component in (1) PunkBuster before 1.229, as used by multiple products including (2) America's Army 1.228 and earlier, (3) Battlefield 1942 1.158 and earlier, (4) Battlefield 2 1.184 and earlier, (5) Battlefield Vietnam 1.150 and earlier, (6) Call of Duty 1.173 and earlier, (7) Call of Duty 2 1.108 and earlier, (8) DOOM 3 1.159 and earlier, (9) Enemy Territory 1.167 and earlier, (10) Far Cry 1.150 and earlier, (11) F.E.A.R.
network
low complexity
even-balance
5.0
2006-02-18 CVE-2006-0771 USE of Externally-Controlled Format String vulnerability in Even Balance Punkbuster
Format string vulnerability in PunkBuster 1.180 and earlier, as used by Soldier of Fortune II and possibly other games, allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via format string specifiers in invalid cvar values, which are not properly handled when the server kicks the player and records the reason.
network
low complexity
even-balance CWE-134
6.4
2004-12-31 CVE-2004-2340 Remote SQL Injection vulnerability in PunkBuster Database
** UNVERIFIABLE ** SQL injection vulnerability in PunkBuster Screenshot Database (PB-DB) Alpha 6 allows remote attackers to execute arbitrary SQL commands via the username and password fields of the login form.
network
low complexity
even-balance
7.5