CVE-2005-3486

Scorched 3D 39.1 (bf) and earlier - Remote Code Execution via Format String Vulnerabilities

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-3486.

AI-analyzed exploit summary This exploit demonstrates multiple vulnerabilities in Scorched 3D <= 39.1, including format string and buffer overflow attacks. It provides functional code to trigger crashes or potential code execution via crafted network packets.

Description

Multiple format string vulnerabilities in Scorched 3D 39.1 (bf) and earlier allow remote attackers to execute arbitrary code via various (1) GLConsole::addLine, (2) ServerCommon::sendString, (3) ServerCommon::serverLog functions, and possibly other unspecified vectors.

Exploits (1)

exploitdb WORKING POC
cdoswindows
https://www.exploit-db.com/exploits/1285

This exploit demonstrates multiple vulnerabilities in Scorched 3D <= 39.1, including format string and buffer overflow attacks. It provides functional code to trigger crashes or potential code execution via crafted network packets.

Classification
Working Poc 95%
Attack Type
Rce | Dos
Complexity
Moderate
Reliability
Reliable
Target: Scorched 3D <= 39.1
No auth needed
Prerequisites: Network access to the target server
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit, Vendor Advisory x_refsource_misc
http://aluigi.altervista.org/adv/scorchbugs-adv.txt
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15292
Third Party Advisory vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200511-12.xml
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17423
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2288
Mailing List mailing-list x_refsource_fulldisc
http://marc.info/?l=full-disclosure&m=113095941031946&w=2

Scores

EPSS 0.1148
EPSS Percentile 95.5%

Details

Status published
Products (1)
scorched_3d/scorched_3d 39.1
Published Nov 03, 2005
Tracked Since Feb 18, 2026