EIP-2026-118974

PRE-CVE

Novell ZENworks Configuration Management Preboot Service 0x06 - Remote Buffer Overflow (Metasploit)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118974. PoCs published by Metasploit.

AI-analyzed exploit summary This is a functional Metasploit module exploiting a buffer overflow in Novell ZENworks Configuration Management 10 SP2 via a crafted packet with opcode 0x06 (PROXY_CMD_CLEAR_WS) sent to port 998/TCP. It includes a ROP chain for DEP bypass and has been tested on Windows Server 2003 SP2.

Description

Novell ZENworks Configuration Management Preboot Service 0x06 - Remote Buffer Overflow (Metasploit)

Exploits (1)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/19931

This is a functional Metasploit module exploiting a buffer overflow in Novell ZENworks Configuration Management 10 SP2 via a crafted packet with opcode 0x06 (PROXY_CMD_CLEAR_WS) sent to port 998/TCP. It includes a ROP chain for DEP bypass and has been tested on Windows Server 2003 SP2.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Novell ZENworks Configuration Management 10 SP2
No auth needed
Prerequisites: Network access to port 998/TCP on the target system
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026