PT-2023-11809 · Alliedmodders · Amx Mod X

Publicado

2023-01-04

·

Atualizado

2024-06-10

·

CVE-2020-36639

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AlliedModders AMX Mod X (affected versions not specified)
Description A critical vulnerability has been found in AlliedModders AMX Mod X on Windows. This issue affects the cmdVoteMap function of the plugins/adminvote.sma file, part of the Console Command Handler component. The manipulation of the amx votemap argument leads to path traversal.
Recommendations Apply a patch to fix this issue, identified as a5f2b5539f6d61050b68df8b22ebb343a2862681. As a temporary workaround, consider disabling the cmdVoteMap function until a patch is available. Restrict access to the plugins/adminvote.sma file to minimize the risk of exploitation. Avoid using the amx votemap argument in the affected Console Command Handler component until the issue is resolved.

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2020-36639

Produtos afetados

Amx Mod X