CVE-2009-4654

Novell eDirectory <8.8 SP5 - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in the dhost module in Novell eDirectory 8.8 SP5 for Windows allows remote authenticated users to execute arbitrary code via long sadminpwd and verifypwd parameters in a submit action to /dhost/httpstk.

Exploits (1)

exploitdb WORKING POC VERIFIED
by karak0rsan · perldoswindows
https://www.exploit-db.com/exploits/10163

Scores

EPSS 0.1549
EPSS Percentile 94.7%

Details

CWE
CWE-119
Status published
Products (1)
novell/edirectory 8.8 sp5
Published Feb 26, 2010
Tracked Since Feb 18, 2026