Vulnerabilities > Freeciv > Freeciv > 2.3.0

DATE CVE VULNERABILITY TITLE RISK
2020-01-23 CVE-2012-6083 Resource Exhaustion vulnerability in Freeciv
Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.
network
low complexity
freeciv CWE-400
7.8
2019-12-30 CVE-2012-5645 Resource Exhaustion vulnerability in multiple products
A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets.
network
low complexity
freeciv fedoraproject CWE-400
7.8
2010-07-08 CVE-2010-2445 OS Command Injection vulnerability in Freeciv 2.2.0/2.3.0
freeciv 2.2 before 2.2.1 and 2.3 before 2.3.0 allows attackers to read arbitrary files or execute arbitrary commands via a scenario that contains Lua functionality, related to the (1) os, (2) io, (3) package, (4) dofile, (5) loadfile, (6) loadlib, (7) module, and (8) require modules or functions.
network
low complexity
freeciv CWE-78
critical
10.0