Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2020-27383
Disclosure Date: June 09, 2021 (last updated February 22, 2025)
Battle.net.exe in Battle.Net 1.27.1.12428 suffers from an elevation of privileges vulnerability which can be used by an "Authenticated User" to modify the existing executable file with a binary of his choice. The vulnerability exist due to weak set of permissions being granted to the "Authenticated Users Group" which grants the (F) Flag aka "Full Control"
0
Attacker Value
Unknown
CVE-2017-14748
Disclosure Date: September 26, 2017 (last updated November 26, 2024)
Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific time during the initial loading of that match.
0
Attacker Value
Unknown
CVE-2009-4768
Disclosure Date: April 20, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the JASS script interpreter in Warcraft III: The Frozen Throne 1.24b and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted custom map. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-3154
Disclosure Date: July 11, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in WebBlizzard CMS allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown
CVE-2007-4638
Disclosure Date: August 31, 2007 (last updated October 04, 2023)
Blizzard Entertainment StarCraft Brood War 1.15.1 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed map, which triggers an out-of-bounds read during a minimap preview.
0
Attacker Value
Unknown
CVE-2007-1949
Disclosure Date: April 11, 2007 (last updated October 04, 2023)
Session fixation vulnerability in WebBlizzard CMS allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
0
Attacker Value
Unknown
CVE-2007-1950
Disclosure Date: April 11, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index_cms.php in WebBlizzard CMS allows remote attackers to inject arbitrary web script or HTML via the Suchzeile parameter.
0