EIP-2026-103906

PRE-CVE

Gadu-Gadu 10.5 - Remote Code Execution

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-103906. PoCs published by Kacper Szczesniak.

AI-analyzed exploit summary This exploit leverages ARP and DNS spoofing to intercept traffic and inject malicious JavaScript into HTTP responses, triggering arbitrary code execution via a crafted HTML event in Gadu-Gadu 10.5. The attack requires man-in-the-middle positioning and relies on social engineering to execute local binaries.

Description

Gadu-Gadu 10.5 - Remote Code Execution

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kacper Szczesniak · textremotemultiple
https://www.exploit-db.com/exploits/35805

This exploit leverages ARP and DNS spoofing to intercept traffic and inject malicious JavaScript into HTTP responses, triggering arbitrary code execution via a crafted HTML event in Gadu-Gadu 10.5. The attack requires man-in-the-middle positioning and relies on social engineering to execute local binaries.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Gadu-Gadu 10.5
No auth needed
Prerequisites: Network access for ARP/DNS spoofing · Victim interaction to trigger JavaScript execution
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026