EIP-2026-115803

PRE-CVE

Microsoft Windows Media Digital Rights Management - ActiveX Control Buffer Overflow (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115803. PoCs published by Joxean Koret.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the Microsoft Windows Digital Rights Management (DRM) ActiveX control. It uses a crafted HTML page with JavaScript to trigger the overflow via the StoreLicense method, potentially leading to remote code execution.

Description

Microsoft Windows Media Digital Rights Management - ActiveX Control Buffer Overflow (PoC)

Exploits (1)

exploitdb WORKING POC VERIFIED
by Joxean Koret · htmldoswindows
https://www.exploit-db.com/exploits/30825

This exploit targets a buffer overflow vulnerability in the Microsoft Windows Digital Rights Management (DRM) ActiveX control. It uses a crafted HTML page with JavaScript to trigger the overflow via the StoreLicense method, potentially leading to remote code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Microsoft Windows DRM ActiveX control
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer with the vulnerable ActiveX control enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026