EIP-2026-102814
PRE-CVEDebian XTERM - 'DECRQSS/comments' Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-102814. PoCs published by Paul Szabo.
AI-analyzed exploit summary This exploit leverages a vulnerability in xterm where the DECRQSS (Device Control Request Status String) feature improperly executes commands embedded in invalid DCS sequences. The PoC demonstrates command injection via a crafted escape sequence, which can be triggered by viewing a malicious log file or email.
Description
Debian XTERM - 'DECRQSS/comments' Code Execution
Exploits (1)
This exploit leverages a vulnerability in xterm where the DECRQSS (Device Control Request Status String) feature improperly executes commands embedded in invalid DCS sequences. The PoC demonstrates command injection via a crafted escape sequence, which can be triggered by viewing a malicious log file or email.