EIP-2026-115957

PRE-CVE

Novel eDirectory DHost Console 8.8 SP3 - Local Overwrite (SEH)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115957. PoCs published by d0lc3.

AI-analyzed exploit summary This exploit demonstrates a local SEH overwrite vulnerability in Novel eDirectory DHost Console 8.8 SP3 by triggering a stack overflow with a 1065-byte buffer, followed by a crafted SEH chain (nSEH and SEH) and a breakpoint shellcode. The exploit targets DHostCon.exe via command-line arguments.

Description

Novel eDirectory DHost Console 8.8 SP3 - Local Overwrite (SEH)

Exploits (1)

exploitdb WORKING POC
by d0lc3 · pythondoswindows
https://www.exploit-db.com/exploits/15267

This exploit demonstrates a local SEH overwrite vulnerability in Novel eDirectory DHost Console 8.8 SP3 by triggering a stack overflow with a 1065-byte buffer, followed by a crafted SEH chain (nSEH and SEH) and a breakpoint shellcode. The exploit targets DHostCon.exe via command-line arguments.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Novell eDirectory DHost Console 8.8 SP3 (20216.67)
No auth needed
Prerequisites: Local access to the target system · Novell eDirectory DHost Console 8.8 SP3 installed
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026