CVE-2026-27831

HIGH

rldns 1.3 - Denial of Service via Heap-Based Out-of-Bounds Read

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2026-27831. PoCs published by XiaomingX, XZ1r0, bluedragonsecurity.

AI-analyzed exploit summary This repository contains a functional SQL injection exploit for WordPress Quiz Maker (CVE-2025-10042), demonstrating time-based blind SQLi via crafted HTTP headers. The PoC includes data extraction logic for admin credentials and hashes.

Description

rldns is an open source DNS server. Version 1.3 has a heap-based out-of-bounds read that leads to denial of service. Version 1.4 contains a patch for the issue.

Exploits (3)

github WORKING POC 10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2026/CVE-2026-27831

This repository contains a functional SQL injection exploit for WordPress Quiz Maker (CVE-2025-10042), demonstrating time-based blind SQLi via crafted HTTP headers. The PoC includes data extraction logic for admin credentials and hashes.

Classification
Working Poc 95%
Attack Type
Sqli
Complexity
Moderate
Reliability
Reliable
Target: WordPress Quiz Maker <= 6.7.0.56
No auth needed
Prerequisites: target WordPress URL · path to quiz page · vulnerable header (default: X-Forwarded-For)
devstral-2 · analyzed Feb 27, 2026 Full analysis →
github WORKING POC
by XZ1r0 · pythonpoc
https://github.com/XZ1r0/cve-2026-poc-collection/tree/main/other/CVE-2026-27831-POC

This repository contains a functional proof-of-concept exploit for CVE-2026-27831, demonstrating a remote heap-based out-of-bounds read vulnerability in rldns version 1.3, leading to a denial of service. The exploit sends a crafted UDP packet to trigger the vulnerability.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: rldns version 1.3
No auth needed
Prerequisites: network access to the target rldns server · UDP port accessibility
devstral-2 · analyzed May 21, 2026 Full analysis →
nomisec WORKING POC
by bluedragonsecurity · poc
https://github.com/bluedragonsecurity/CVE-2026-27831-POC

This repository contains a functional proof-of-concept exploit for CVE-2026-27831, a heap-based out-of-bounds read vulnerability in rldns version 1.3. The exploit sends a crafted UDP packet to trigger a denial-of-service condition.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: rldns version 1.3
No auth needed
Prerequisites: network access to the target rldns server · UDP port accessibility
devstral-2 · analyzed Feb 26, 2026 Full analysis →

Scores

CVSS v3 7.5
EPSS 0.0006
EPSS Percentile 19.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-125
Status published
Products (1)
bluedragonsecurity/rldns = 1.3
Published Feb 26, 2026
Tracked Since Feb 26, 2026