CVE-2023-38312: Valvesoftware Counter-Strike
High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.
A directory traversal vulnerability in Valve Counter-Strike 8684 allows a client (with remote control access to a game server) to read arbitrary files from the underlying server via the motdfile console variable.
Affected products
- Valvesoftware Counter-Strike: version 8684 only
Published 2023-10-15. Last modified 2026-06-17.