CVE Vulnerabilities

CVE-2003-1433

Improper Authentication

Published: Dec 31, 2003 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Epic Games Unreal Engine 226f through 436 does not validate the challenge key, which allows remote attackers to exhaust the player limit by joining the game multiple times.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
Unreal_engineEpic_games226f (including)226f (including)
Unreal_engineEpic_games433 (including)433 (including)
Unreal_engineEpic_games436 (including)436 (including)

Potential Mitigations

References