{"api_version":"1","generated_at":"2026-07-23T05:39:26+00:00","cve":"CVE-2004-2099","urls":{"html":"https://cve.report/CVE-2004-2099","api":"https://cve.report/api/cve/CVE-2004-2099.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2004-2099","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2004-2099"},"summary":{"title":"CVE-2004-2099","description":"Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.","state":"PUBLISHED","assigner":"mitre","published_at":"2004-12-31 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5.1","severity":"","vector":"AV:N/AC:H/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/14909","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/14909","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt","name":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://marc.info/?l=bugtraq&m=107479094508691&w=2","name":"http://marc.info/?l=bugtraq&m=107479094508691&w=2","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"'Need for Speed Hot pursuit 2 <= 242 client's buffer overflow' - MARC","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/9473","name":"http://www.securityfocus.com/bid/9473","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"EA Black Box Need For Speed Hot Pursuit 2 Game Client Remote Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2004-2099","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2004-2099","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2004","cve_id":"2099","vulnerable":"1","versionEndIncluding":"242.0","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"electronic_arts","cpe5":"need_for_speed_hot_pursuit_2","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T01:15:01.556Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"hotpursuit2-bo(14909)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/14909"},{"name":"20040122 Need for Speed Hot pursuit 2 <= 242 client's buffer overflow","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://marc.info/?l=bugtraq&m=107479094508691&w=2"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt"},{"name":"9473","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/9473"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2004-01-22T00:00:00.000Z","descriptions":[{"lang":"en","value":"Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-10T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"hotpursuit2-bo(14909)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/14909"},{"name":"20040122 Need for Speed Hot pursuit 2 <= 242 client's buffer overflow","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://marc.info/?l=bugtraq&m=107479094508691&w=2"},{"tags":["x_refsource_MISC"],"url":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt"},{"name":"9473","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/9473"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2004-2099","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"hotpursuit2-bo(14909)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/14909"},{"name":"20040122 Need for Speed Hot pursuit 2 <= 242 client's buffer overflow","refsource":"BUGTRAQ","url":"http://marc.info/?l=bugtraq&m=107479094508691&w=2"},{"name":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt","refsource":"MISC","url":"http://aluigi.altervista.org/adv/nfshp2cbof-adv.txt"},{"name":"9473","refsource":"BID","url":"http://www.securityfocus.com/bid/9473"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2004-2099","datePublished":"2005-05-27T04:00:00.000Z","dateReserved":"2005-05-27T00:00:00.000Z","dateUpdated":"2024-08-08T01:15:01.556Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2004-12-31 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:P/A:P","baseScore":5.1,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":4.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:electronic_arts:need_for_speed_hot_pursuit_2:*:*:*:*:*:*:*:*","versionEndIncluding":"242.0","matchCriteriaId":"2451448D-24DE-4845-8DAC-4569BE63BDE9"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2004","CveId":"2099","Ordinal":"1","Title":"CVE-2004-2099","CVE":"CVE-2004-2099","Year":"2004"},"notes":[{"CveYear":"2004","CveId":"2099","Ordinal":"1","NoteData":"Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.","Type":"Description","Title":"CVE-2004-2099"},{"CveYear":"2004","CveId":"2099","Ordinal":"2","NoteData":"2005-05-27","Type":"Other","Title":"Published"},{"CveYear":"2004","CveId":"2099","Ordinal":"3","NoteData":"2017-07-10","Type":"Other","Title":"Modified"}]}}}