CVE-2005-2551

Novell eDirectory 8.7.3 - Buffer Overflow in dhost.exe

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2005-2551. PoCs published by Metasploit, Unknown, including Metasploit module exploits/windows/http/edirectory_imonitor.

AI-analyzed exploit summary This exploit targets a stack buffer overflow in eDirectory 8.7.3 iMonitor service via a crafted URI. It leverages a pop/pop/ret instruction to redirect execution to shellcode, achieving remote code execution.

Description

Buffer overflow in dhost.exe in iMonitor for Novell eDirectory 8.7.3 on Windows allows attackers to cause a denial of service (crash) and obtain access to files via unknown vectors.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16769

This exploit targets a stack buffer overflow in eDirectory 8.7.3 iMonitor service via a crafted URI. It leverages a pop/pop/ret instruction to redirect execution to shellcode, achieving remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Novell eDirectory 8.7.3 iMonitor
No auth needed
Prerequisites: Network access to port 8008 · Target running vulnerable eDirectory version
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Metasploit · remotewindows
https://www.exploit-db.com/exploits/1152

This exploit targets a stack overflow vulnerability in eDirectory 8.7.3 iMonitor service via a crafted HTTP GET request. It leverages a pop/pop/ret instruction to redirect execution to shellcode, achieving remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Novell eDirectory 8.7.3 iMonitor
No auth needed
Prerequisites: Network access to the target service on port 8008 · Vulnerable version of eDirectory iMonitor
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC GREAT
by Unknown · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/edirectory_imonitor.rb

This Metasploit module exploits a stack buffer overflow in eDirectory 8.7.3 iMonitor service via a crafted HTTP request. It leverages a pop/pop/ret instruction to redirect execution to shellcode, achieving remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: eDirectory 8.7.3 iMonitor
No auth needed
Prerequisites: Network access to the target service on port 8008 · Vulnerable version of eDirectory iMonitor
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/16393
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1014661
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14548
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/213165

Scores

EPSS 0.7176
EPSS Percentile 98.8%

Details

Status published
Products (1)
novell/edirectory 8.7.3
Published Aug 12, 2005
Tracked Since Feb 18, 2026