CVE-2006-2082

Source
https://cve.org/CVERecord?id=CVE-2006-2082
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-2082.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-2082
Downstream
Related
Published
2006-05-10T02:18:00Z
Modified
2026-04-10T03:38:25.899828Z
Summary
[none]
Details

Directory traversal vulnerability in Quake 3 engine, as used in products including Quake3 Arena, Return to Castle Wolfenstein, Wolfenstein: Enemy Territory, and Star Trek Voyager: Elite Force, when the sv_allowdownload cvar is enabled, allows remote attackers to read arbitrary files from the server via ".." sequences in a .pk3 file request.

References

Affected packages