CVE-2003-0650 Information

Description

Directory traversal vulnerability in GSAPAK.EXE for GameSpy Arcade possibly versions before 1.3e allows remote attackers to overwrite arbitrary files and execute arbitrary code via .. (dot dot) sequences in filenames in a .APK (Zip) file.

Reference

http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0064.html http://marc.info/?l=bugtraq&m=105958779017085&w=2 http://www.gamespyarcade.com/features/versions.shtml http://www.securityfocus.com/bid/8309

Share on: