Multiple directory traversal vulnerabilities in the Refractor 2 engine, as used in Battlefield 2 1.50 (1.5.3153-802.0) and earlier, and Battlefield 2142 (1.10.48.0) and earlier, allow remote servers to overwrite arbitrary files on the client via "..\" (dot dot backslash) sequences in URLs for the (1) sponsor or (2) community logos, and other URLs related to (3) DemoDownloadURL, (4) DemoIndexURL and (5) CustomMapsURL.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-07-02T20:00:00Z

Updated: 2024-09-16T19:35:26.035Z

Reserved: 2010-07-02T00:00:00Z

Link: CVE-2010-2627

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2010-07-02T20:30:01.910

Modified: 2010-07-06T04:00:00.000

Link: CVE-2010-2627

cve-icon Redhat

No data.