EIP-2026-115936
PRE-CVENetwrix Auditor 7.1.322.0 - ActiveX 'sourceFile' Stack Buffer Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-115936. PoCs published by LiquidWorm.
AI-analyzed exploit summary The exploit demonstrates a stack-based buffer overflow in Netwrix Auditor 7.1.322.0 via the 'sourceFile' parameter in PackFile() and UnpackFile() functions, allowing arbitrary code execution by overwriting SEH. The PoC includes VBScript-based HTML files triggering the vulnerability.
Description
Netwrix Auditor 7.1.322.0 - ActiveX 'sourceFile' Stack Buffer Overflow
Exploits (1)
The exploit demonstrates a stack-based buffer overflow in Netwrix Auditor 7.1.322.0 via the 'sourceFile' parameter in PackFile() and UnpackFile() functions, allowing arbitrary code execution by overwriting SEH. The PoC includes VBScript-based HTML files triggering the vulnerability.