CVE-2005-1815

Hummingbird Connectivity 10.0.0.1 and 9.0.0.4 - Buffer Overflow via FTP or LPD Command

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2005-1815. PoCs published by Metasploit, MC, including Metasploit module exploits/windows/lpd/hummingbird_exceed.

AI-analyzed exploit summary This exploit targets a stack buffer overflow in Hummingbird Connectivity 10 SP5 LPD Daemon via a crafted TCP payload. It leverages SEH overwrites for reliable exploitation on Windows 2000 and XP targets.

Description

Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of service and possibly execute arbitrary code via (1) an FTP command with a long argument to FTPD (ftpdw.exe) or (2) a large amount of data to LPD (Lpdw.exe).

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16337

This exploit targets a stack buffer overflow in Hummingbird Connectivity 10 SP5 LPD Daemon via a crafted TCP payload. It leverages SEH overwrites for reliable exploitation on Windows 2000 and XP targets.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Hummingbird Connectivity 10 SP5
No auth needed
Prerequisites: Network access to port 515 (LPD) · Target running vulnerable Hummingbird Connectivity version
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/lpd/hummingbird_exceed.rb

This Metasploit module exploits a stack buffer overflow in Hummingbird Connectivity 10 LPD Daemon via a crafted TCP payload sent to port 515. It leverages SEH overwrites for reliable exploitation on Windows 2000 and XP targets.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Hummingbird Connectivity 10 SP5
No auth needed
Prerequisites: Network access to target's LPD service (port 515) · Target running vulnerable Hummingbird Connectivity version
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (5)

Core 5
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13788
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13790
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/15557

Scores

EPSS 0.4719
EPSS Percentile 98.7%

Details

Status published
Products (3)
hummingbird/connectivity 7.1
hummingbird/connectivity 9.0
hummingbird/connectivity 10.0
Published Jun 01, 2005
Tracked Since Feb 18, 2026