EIP-2026-103973

PRE-CVE

Lumension Security Lumension Device Control 4.x - Memory Corruption

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-103973. PoCs published by Andy Davis.

AI-analyzed exploit summary This Python script exploits a memory corruption vulnerability in Lumension Device Control by sending a malformed packet to port 65129, potentially causing a denial-of-service or remote code execution. The packet contains a crafted payload with specific fields, including a client version and hostname, designed to trigger the vulnerability.

Description

Lumension Security Lumension Device Control 4.x - Memory Corruption

Exploits (1)

exploitdb WORKING POC VERIFIED
by Andy Davis · pythonremotemultiple
https://www.exploit-db.com/exploits/35790

This Python script exploits a memory corruption vulnerability in Lumension Device Control by sending a malformed packet to port 65129, potentially causing a denial-of-service or remote code execution. The packet contains a crafted payload with specific fields, including a client version and hostname, designed to trigger the vulnerability.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Theoretical
Target: Lumension Device Control 4.4 SR6
No auth needed
Prerequisites: Network access to the target system on port 65129
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026