EIP-2026-115823

PRE-CVE

Microsoft Windows XP - 'explorer.exe' Remote Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115823. PoCs published by Rafel Ivgi The-Insider.

AI-analyzed exploit summary This is a writeup describing a denial of service vulnerability in Microsoft Windows Explorer for Windows XP, triggered by malformed HTML tags using the 'shell:' command. The issue causes the application to crash when executing arbitrary programs via crafted links or iframes.

Description

Microsoft Windows XP - 'explorer.exe' Remote Denial of Service

Exploits (1)

exploitdb WRITEUP VERIFIED
by Rafel Ivgi The-Insider · textdoswindows
https://www.exploit-db.com/exploits/23850

This is a writeup describing a denial of service vulnerability in Microsoft Windows Explorer for Windows XP, triggered by malformed HTML tags using the 'shell:' command. The issue causes the application to crash when executing arbitrary programs via crafted links or iframes.

Classification
Writeup 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Microsoft Windows Explorer for Windows XP
No auth needed
Prerequisites: User interaction required to click a malicious link or view a crafted HTML document
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026