Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple format string vulnerabilities in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbitrary code via format string specifiers in the (1) username, (2) password, and (3) nickname fields in a "0x01" packet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DropTeam多个远程安全漏洞
Vulnerability Description
Dropteam是由Battlefront开发的战略战争游戏。 Dropteam中存在0x01报文格式串漏洞, 客户端所使用的帐号用户名、口令和昵称被直接用作了sprintf()的格式参数,因此可以通过0x01报文利用各种格式串漏洞。请注意服务器所发送的回复报文中会显示输出字符串,因此攻击者可以按需调节攻击报文。
CVSS Information
N/A
Vulnerability Type
N/A