CVE-2023-38312

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
15/10/2023
Last modified:
19/10/2023

Description

A directory traversal vulnerability in Valve Counter-Strike 8684 allows a client (with remote control access to a game server) to read arbitrary files from the underlying server via the motdfile console variable.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:valvesoftware:counter-strike:8684:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools