Format string vulnerability in the Say command in sv_main.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a chat message, related to a call to the BroadcastPrintf function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.191
EPSS Ranking 95.0%