PT-2003-2378 · Epic Games · Unreal Engine
Published
2003-12-31
·
Updated
2017-07-29
·
CVE-2003-1433
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Epic Games Unreal Engine versions 226f through 436
Description
The issue arises from the failure to validate the challenge key, allowing remote attackers to join the game multiple times and exhaust the player limit.
Recommendations
For versions 226f through 436, consider implementing proper validation of the challenge key to prevent unauthorized access and mitigate the risk of player limit exhaustion.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Unreal Engine