EIP-2026-115602

PRE-CVE

Media Player classic StatsReader - '.stats' Stack Buffer Overflow (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115602. PoCs published by ITSecTeam.

AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in Media Player Classic's StatsReader by generating a maliciously large .stats file. The PoC creates a file with 500,000 'A' characters to trigger the vulnerability, potentially leading to arbitrary code execution.

Description

Media Player classic StatsReader - '.stats' Stack Buffer Overflow (PoC)

Exploits (1)

exploitdb WORKING POC
by ITSecTeam · pythondoswindows
https://www.exploit-db.com/exploits/11706

This exploit demonstrates a stack-based buffer overflow in Media Player Classic's StatsReader by generating a maliciously large .stats file. The PoC creates a file with 500,000 'A' characters to trigger the vulnerability, potentially leading to arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Media Player Classic (MPC-HC) StatsReader
No auth needed
Prerequisites: Victim must open the maliciously crafted .stats file in Media Player Classic
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026