CVE-2009-4654

Publication date

2010-02-26 18:09:00

Family

mitre

State

PUBLISHED

Description

Stack-based buffer overflow in the dhost module in Novell eDirectory 8.8 SP5 for Windows allows remote authenticated users to execute arbitrary code via long sadminpwd and verifypwd parameters in a submit action to /dhost/httpstk.