{"api_version":"1","generated_at":"2026-07-23T06:51:39+00:00","cve":"CVE-2004-0290","urls":{"html":"https://cve.report/CVE-2004-0290","api":"https://cve.report/api/cve/CVE-2004-0290.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-0290","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-0290"},"summary":{"title":"CVE-2004-0290","description":"Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields.","state":"PUBLISHED","assigner":"mitre","published_at":"2004-11-23 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.securityfocus.com/bid/9671","name":"http://www.securityfocus.com/bid/9671","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Vendor Advisory"],"title":"Freeform Interactive Purge/Purge Jihad Game Client Remote Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15216","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15216","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167","name":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://marc.info/?l=bugtraq&m=107695064204362&w=2","name":"http://marc.info/?l=bugtraq&m=107695064204362&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Broadcast client buffer-overflow in Purge Jihad <= 2.0.1' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-0290","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-0290","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"290","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freeform_interactive","cpe5":"purge","cpe6":"1.4.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2004","cve_id":"290","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freeform_interactive","cpe5":"purge_jihad","cpe6":"2.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T00:10:03.889Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"9671","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/9671"},{"name":"purge-battletype-map-bo(15216)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15216"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167"},{"name":"20040216 Broadcast client buffer-overflow in Purge Jihad <= 2.0.1","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=107695064204362&w=2"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-02-16T00:00:00.000Z","descriptions":[{"lang":"en","value":"Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"9671","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/9671"},{"name":"purge-battletype-map-bo(15216)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15216"},{"tags":["x_refsource_CONFIRM"],"url":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167"},{"name":"20040216 Broadcast client buffer-overflow in Purge Jihad <= 2.0.1","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=107695064204362&w=2"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-0290","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"9671","refsource":"BID","url":"http://www.securityfocus.com/bid/9671"},{"name":"purge-battletype-map-bo(15216)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15216"},{"name":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167","refsource":"CONFIRM","url":"http://purge.worthplaying.com/phpbb/viewtopic.php?t=1167"},{"name":"20040216 Broadcast client buffer-overflow in Purge Jihad <= 2.0.1","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=107695064204362&w=2"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-0290","datePublished":"2004-03-18T05:00:00.000Z","dateReserved":"2004-03-17T00:00:00.000Z","dateUpdated":"2024-08-08T00:10:03.889Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2004-11-23 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:freeform_interactive:purge:1.4.7:*:*:*:*:*:*:*","matchCriteriaId":"DE9FBFCC-E198-4EC8-954D-CEF762B9ABED"},{"vulnerable":true,"criteria":"cpe:2.3:a:freeform_interactive:purge_jihad:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"45850B59-9AC8-460B-AFAC-ABD093D2D76E"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"290","Ordinal":"1","Title":"CVE-2004-0290","CVE":"CVE-2004-0290","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"290","Ordinal":"1","NoteData":"Buffer overflow in Purge Jihad 2.0.1 and earlier allows remote game servers to execute arbitrary code via an information packet that contains large (1) battle type and (2) map name fields.","Type":"Description","Title":"CVE-2004-0290"},{"CveYear":"2004","CveId":"290","Ordinal":"2","NoteData":"2004-03-18","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"290","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}