peter bassill · operator
$ cve CVE-2006-3325 JSON

CVE-2006-3325 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 4.8% (pctl 92)

Patch early

A public exploit exists.

Description

client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus Quake 3 Engine (ioquake3) revision 810 and earlier allows remote malicious servers to overwrite arbitrary write-protected cvars variables on the client, such as cl_allowdownload for Automatic Downloading and fs_homepath for the quake3 path, via a string of cvar names and values sent from the server. NOTE: this can be combined with another vulnerability to overwrite arbitrary files.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS4.76% — more likely to be exploited than 92% of all CVEs
On CISA KEVno
Public exploityes
Published2006-06-30
Last modified2026-06-16

Affected (1)

VendorProduct
id softwarequake 3 engine

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD