CVE-2024-23985
HIGHEzServer 6.4.017 - Denial of Service via RNTO Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-23985.
Includes Metasploit module exploits/windows/http/ezserver_http.
AI-analyzed exploit summary This Metasploit module exploits a stack buffer overflow in EZHomeTech EzServer (CVE-2024-23985) by sending a crafted HTTP request with an overly long string, leveraging an egghunter to execute a payload due to size constraints.
Description
EzServer 6.4.017 allows a denial of service (daemon crash) via a long string, such as one for the RNTO command.
Exploits (1)
metasploit
WORKING POC
EXCELLENT
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/http/ezserver_http.rb
This Metasploit module exploits a stack buffer overflow in EZHomeTech EzServer (CVE-2024-23985) by sending a crafted HTTP request with an overly long string, leveraging an egghunter to execute a payload due to size constraints.
Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target:
EZHomeTech EzServer <= 6.4.017
No auth needed
Prerequisites:
Network access to the target's port 8000 · Vulnerable version of EZHomeTech EzServer
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (1)
Core 1
Core References
Exploit, Third Party Advisory, VDB Entry
https://packetstormsecurity.com/files/176663/EzServer-6.4.017-Denial-Of-Service.html
Scores
CVSS v3
7.5
EPSS
0.0357
EPSS Percentile
87.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
yes
Technical Impact
partial
Details
Status
published
Products (1)
ezhometech/ezserver
6.4.017
Published
Jan 25, 2024
Tracked Since
Feb 18, 2026