CVE-2000-0846
Darxite <= 0.4 - Remote Code Execution via Long Username or Password
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-0846. PoCs published by Scrippie.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Darxite Daemon v0.4 during the login process. It leverages a 256-character buffer overflow via sprintf() to execute arbitrary shellcode, providing a reverse shell to the attacker.
Description
Buffer overflow in Darxite 0.4 and earlier allows a remote attacker to execute arbitrary commands via a long username or password.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Scrippie · cremotelinux
https://www.exploit-db.com/exploits/20159
This exploit targets a buffer overflow vulnerability in Darxite Daemon v0.4 during the login process. It leverages a 256-character buffer overflow via sprintf() to execute arbitrary shellcode, providing a reverse shell to the attacker.
Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target:
Darxite Daemon v0.4
No auth needed
Prerequisites:
Network access to the target · Target running Darxite Daemon v0.4
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (3)
Core 3
Core References
Exploit, Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/1598
Exploit, Vendor Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2000-08/0256.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5134
Scores
EPSS
0.0388
EPSS Percentile
88.9%
Details
Status
published
Products (1)
ashley_montanaro/darxite
0.4
Published
Nov 14, 2000
Tracked Since
Feb 18, 2026