Back
CVE-2003-1430
Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known files via a ".." (dot dot) in an unreal:// URL.
Published: Dec 31, 2003
Modified: Jun 16, 2026
CWE-22
CVSS Metrics
Affected Products (3)
| Vendor | Product | Version |
|---|---|---|
| epic_games | unreal_engine | 226f |
| epic_games | unreal_engine | 433 |
| epic_games | unreal_engine | 436 |
GitHub Security Advisory GHSA-5w64-w3wc-5m39
Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote...
References (8)
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0063.html
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0142.html
- http://www.securityfocus.com/bid/6775
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11299
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0063.html
- http://archives.neohapsis.com/archives/bugtraq/2003-02/0142.html
- http://www.securityfocus.com/bid/6775
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11299
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
2.80%
Top 15% most likely to be exploited
Threat Score
20.8 / 100
Data Sources
NVD
EPSS
GitHub