Show filters
12 Total Results
Displaying 1-10 of 12
Sort by:
Attacker Value
Unknown
CVE-2023-30382
Disclosure Date: May 23, 2023 (last updated October 08, 2023)
A buffer overflow in the component hl.exe of Valve Half-Life up to 5433873 allows attackers to execute arbitrary code and escalate privileges by supplying crafted parameters.
0
Attacker Value
Unknown
CVE-2007-5713
Disclosure Date: October 30, 2007 (last updated October 04, 2023)
Off-by-one error in the GeoIP module in the AMX Mod X 1.76d plugin for Half-Life Server might allow attackers to execute arbitrary code or cause a denial of service via unspecified input related to geolocation, which triggers an error message from the (1) geoip_code2 or (2) geoip_code3 function, leading to a buffer overflow.
0
Attacker Value
Unknown
CVE-2007-5477
Disclosure Date: October 16, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in auth.w in djeyl.net WebMod 0.48 Half-Life Dedicated Server plugin allows remote attackers to inject arbitrary web script or HTML via the redir parameter.
0
Attacker Value
Unknown
CVE-2006-0734
Disclosure Date: February 16, 2006 (last updated February 22, 2025)
The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.6 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a backslash character at the end of a connection string to UDP port 27015.
0
Attacker Value
Unknown
CVE-2004-0724
Disclosure Date: July 27, 2004 (last updated February 22, 2025)
The Half-Life engine before July 7 2004 allows remote attackers to cause a denial of service (server or client crash) via an empty fragmented packet.
0
Attacker Value
Unknown
CVE-2003-1325
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.1.1.0 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a certain connection string to UDP port 27015 that represents "absence of player informations," a related issue to CVE-2006-0734.
0
Attacker Value
Unknown
CVE-2002-0964
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Half-Life Server 1.1.1.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via multiple responses to the initial challenge with different cd_key values, which reaches the player limit and prevents other players from connecting until the original responses have timed out.
0
Attacker Value
Unknown
CVE-2001-0964
Disclosure Date: September 20, 2001 (last updated February 22, 2025)
Buffer overflow in client for Half-Life 1.1.0.8 and earlier allows malicious remote servers to execute arbitrary code via a long console command.
0
Attacker Value
Unknown
CVE-2001-0358
Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Buffer overflows in Sierra Half-Life build 1573 and earlier allow remote attackers to execute arbitrary code via (1) a long map command, (2) a long exec command, or (3) long input in a configuration file.
0
Attacker Value
Unknown
CVE-2001-0359
Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Format string vulnerability in Sierra Half-Life build 1573 and earlier allows a remote attacker to execute arbitrary code via the map command.
0