Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown

CVE-2020-27383

Disclosure Date: June 09, 2021 (last updated February 22, 2025)
Battle.net.exe in Battle.Net 1.27.1.12428 suffers from an elevation of privileges vulnerability which can be used by an "Authenticated User" to modify the existing executable file with a binary of his choice. The vulnerability exist due to weak set of permissions being granted to the "Authenticated Users Group" which grants the (F) Flag aka "Full Control"
Attacker Value
Unknown

CVE-2017-14748

Disclosure Date: September 26, 2017 (last updated November 26, 2024)
Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific time during the initial loading of that match.
0
Attacker Value
Unknown

CVE-2009-4768

Disclosure Date: April 20, 2010 (last updated October 04, 2023)
Unspecified vulnerability in the JASS script interpreter in Warcraft III: The Frozen Throne 1.24b and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted custom map. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-3154

Disclosure Date: July 11, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in WebBlizzard CMS allows remote attackers to execute arbitrary SQL commands via the page parameter.
0
Attacker Value
Unknown

CVE-2007-4638

Disclosure Date: August 31, 2007 (last updated October 04, 2023)
Blizzard Entertainment StarCraft Brood War 1.15.1 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed map, which triggers an out-of-bounds read during a minimap preview.
0
Attacker Value
Unknown

CVE-2007-1949

Disclosure Date: April 11, 2007 (last updated October 04, 2023)
Session fixation vulnerability in WebBlizzard CMS allows remote attackers to hijack web sessions by setting a PHPSESSID cookie.
0
Attacker Value
Unknown

CVE-2007-1950

Disclosure Date: April 11, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index_cms.php in WebBlizzard CMS allows remote attackers to inject arbitrary web script or HTML via the Suchzeile parameter.
0