cbcvebase.
CVE-2006-5478
published 2006-10-24

CVE-2006-5478: Multiple stack-based buffer overflows in Novell eDirectory 8.8.x before 8.8.1 FTF1, and 8.x up to 8.7.3.8, and Novell NetMail before 3.52e FTF2, allow remote…

PriorityP270high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
83.89%
99.7th percentile
Multiple stack-based buffer overflows in Novell eDirectory 8.8.x before 8.8.1 FTF1, and 8.x up to 8.7.3.8, and Novell NetMail before 3.52e FTF2, allow remote attackers to execute arbitrary code via (1) a long HTTP Host header, which triggers an overflow in the BuildRedirectURL function; or vectors related to a username containing a . (dot) character in the (2) SMTP, (3) POP, (4) IMAP, (5) HTTP, or (6) Networked Messaging Application Protocol (NMAP) Netmail services.

Affected

9 ranges
VendorProductVersion rangeFixed in
novelledirectory
novelledirectory
novelledirectory
novelledirectory
novelledirectory
novelledirectory
novelledirectory
novelledirectory
novelledirectory

Detection & IOCsextracted from sources · hover to see the quote

port8028
urlGET /nds HTTP/1.1
path/nds
other0x10085bee (ntls.dll)
other0x5f833b7a (MFC42U.dll CALL ESP)
port4444
other0x5f80bbf7 (eDirectory MFC42U.dll)
other0x776a1082 (ws2help.dll pop esi, pop ebx, retn - Windows NT SP 5/6)
other0x750211a9 (ws2help.dll pop ebp, pop ebx, retn - Windows 2k Universal)
other0x71abe325 (ws2help.dll pop ebx, pop ebp, retn - Windows XP Universal)
bytes
\x81\xc4\x54\xf2\xff\xff
bytes
\xde\xc0\xad\xde
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.