EIP-2026-115915

PRE-CVE

Nero Express 7.9.6.4 - Local Heap (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115915. PoCs published by D3V!L FUCKER.

AI-analyzed exploit summary This Perl script generates a malformed Nero Express project file (exploit.nri) with a crafted header and a large buffer of 'A' characters to trigger a local heap-based buffer overflow in Nero Express 7.9.6.4. The exploit is designed to be executed by opening the file through Nero StartSmart Essentials on Windows Vista SP0.

Description

Nero Express 7.9.6.4 - Local Heap (PoC)

Exploits (1)

exploitdb WORKING POC
by D3V!L FUCKER · perldoswindows
https://www.exploit-db.com/exploits/10902

This Perl script generates a malformed Nero Express project file (exploit.nri) with a crafted header and a large buffer of 'A' characters to trigger a local heap-based buffer overflow in Nero Express 7.9.6.4. The exploit is designed to be executed by opening the file through Nero StartSmart Essentials on Windows Vista SP0.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Nero Express 7.9.6.4
No auth needed
Prerequisites: Nero Express 7.9.6.4 installed on Windows Vista SP0 · Ability to create and open a malformed .nri file
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026