Back

CVE-2003-1430

Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known files via a ".." (dot dot) in an unreal:// URL.

Published: Dec 31, 2003 Modified: Jun 16, 2026
CWE-22

CVSS Metrics

Affected Products (3)

Vendor Product Version
epic_games unreal_engine 226f
epic_games unreal_engine 433
epic_games unreal_engine 436

GitHub Security Advisory GHSA-5w64-w3wc-5m39

Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 2.80%

Top 15% most likely to be exploited

Threat Score 20.8 / 100

Data Sources

NVD EPSS GitHub