EIP-2026-103373

PRE-CVE

HospitalRun 1.0.0-beta - Local Root Exploit for macOS

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-103373. PoCs published by Jean Pereira.

AI-analyzed exploit summary This exploit modifies the electron.asar file in HospitalRun to inject a payload that executes a reverse shell with root privileges when the application is launched. It leverages a local privilege escalation vulnerability by overwriting a specific function in the Electron process.

Description

HospitalRun 1.0.0-beta - Local Root Exploit for macOS

Exploits (1)

exploitdb WORKING POC
by Jean Pereira · rubylocalmacos
https://www.exploit-db.com/exploits/51310

This exploit modifies the electron.asar file in HospitalRun to inject a payload that executes a reverse shell with root privileges when the application is launched. It leverages a local privilege escalation vulnerability by overwriting a specific function in the Electron process.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: HospitalRun 1.0.0-beta
No auth needed
Prerequisites: HospitalRun 1.0.0-beta installed on macOS · Write permissions to /Applications/HospitalRun.app/Contents/Resources/electron.asar
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026