peter bassill · operator
$ cve CVE-2003-1354 JSON

CVE-2003-1354 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 6.2% (pctl 93)

Patch early

A public exploit exists.

Description

Multiple GameSpy 3D 2.62 compatible gaming servers generate very large UDP responses to small requests, which allows remote attackers to use the servers as an amplifier in DDoS attacks with spoofed UDP query packets, as demonstrated using Battlefield 1942.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS6.2% — more likely to be exploited than 93% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2003-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
gamespy3dgamespy 3d

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD