EIP-2026-115126
PRE-CVECyme ChartFX Client Server - ActiveX Control Array Indexing
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-115126. PoCs published by Francis Provencher.
AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in the ChartFX ActiveX Control within CYME Power Engineering Software. It leverages an indexing error in the ShowPropertiesDialog method to write a single byte to an arbitrary memory location, potentially leading to arbitrary code execution.
Description
Cyme ChartFX Client Server - ActiveX Control Array Indexing
Exploits (1)
This exploit targets a memory corruption vulnerability in the ChartFX ActiveX Control within CYME Power Engineering Software. It leverages an indexing error in the ShowPropertiesDialog method to write a single byte to an arbitrary memory location, potentially leading to arbitrary code execution.