Vulnerabilities > CVE-2004-2099 - Remote Buffer Overflow vulnerability in EA Black Box Need For Speed Hot Pursuit 2 Game Client

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
electronic-arts
exploit available

Summary

Buffer overflow in Need for Speed Hot Pursuit 2.0 client (NFSHP2), version 242 and earlier, allows remote attackers (servers) to execute arbitrary code via long (1) gamename, (2) gamever, (3) hostname, (4) gametype, (5) mapname or (6) gamemode commands.

Vulnerable Configurations

Part Description Count
Application
Electronic_Arts
1

Exploit-Db

descriptionNeed for Speed 2 Remote Client Buffer Overflow Exploit. CVE-2004-2099. Dos exploit for windows platform
idEDB-ID:147
last seen2016-01-31
modified2004-01-23
published2004-01-23
reporterLuigi Auriemma
sourcehttps://www.exploit-db.com/download/147/
titleNeed for Speed 2 - Remote Client Buffer Overflow Exploit