Lucene search

K
cveMitreCVE-2004-2099
HistoryMay 27, 2005 - 4:00 a.m.

CVE-2004-2099

2005-05-2704:00:00
mitre
web.nvd.nist.gov
24
buffer overflow
nfshp2
remote code execution
vulnerability
nvd
cve-2004-2099

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.046

Percentile

92.6%

Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.

Affected configurations

Nvd
Node
electronic_artsneed_for_speed_hot_pursuit_2Range242.0
VendorProductVersionCPE
electronic_artsneed_for_speed_hot_pursuit_2*cpe:2.3:a:electronic_arts:need_for_speed_hot_pursuit_2:*:*:*:*:*:*:*:*

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.046

Percentile

92.6%

Related for CVE-2004-2099