EIP-2026-115399

PRE-CVE

HTML Help Workshop 1.4 - Buffer Overflow (SEH) (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115399. PoCs published by Moroccan Kingdom (MKD).

AI-analyzed exploit summary This exploit demonstrates a SEH-based buffer overflow in HTML Help Workshop 1.4 by crafting a malicious .txt file with a structured payload (JNK, NEH, SEH, SHL). It targets Windows XP SP3/SP2 and Windows 7 (32/64-bit) but lacks a functional payload (e.g., shellcode).

Description

HTML Help Workshop 1.4 - Buffer Overflow (SEH) (PoC)

Exploits (1)

exploitdb WORKING POC VERIFIED
by Moroccan Kingdom (MKD) · pythondoswindows
https://www.exploit-db.com/exploits/34463

This exploit demonstrates a SEH-based buffer overflow in HTML Help Workshop 1.4 by crafting a malicious .txt file with a structured payload (JNK, NEH, SEH, SHL). It targets Windows XP SP3/SP2 and Windows 7 (32/64-bit) but lacks a functional payload (e.g., shellcode).

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: HTML Help Workshop 1.4
No auth needed
Prerequisites: HTML Help Workshop 1.4 installed · Victim interaction to open the crafted file
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026