CVE Database
/

CVE-2004-2594

Back to search

CVE-2004-2594

Published: Nov 29, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Absolute path traversal vulnerability in Quake II server before R1Q2 on Windows, as used in multiple products, allows remote attackers to read arbitrary files via a "\/" in a pathname argument, as demonstrated by "download \/server.cfg".

VendorProductVersions

n/a

n/a

affected
n/a

References

11183
vdb-entry
x_refsource_OSVDB
1011979
vdb-entry
x_refsource_SECTRACK
11551
vdb-entry
x_refsource_BID
13013
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now