Missing User Warnings
Medium
- Confidence
- 90% confidence
- Finding
- This script transmits an RCON password and privileged server commands over a raw TCP connection without any user-facing warning or protection, and classic Source/Valve RCON is not encrypted. In the context of a server-management skill, this increases the chance that operators unknowingly expose administrative credentials or issue destructive commands across untrusted networks.
