EIP-2026-116015

PRE-CVE

Oracle DataDirect ODBC Drivers - HOST Attribute 'arsqls24.dll' Stack Buffer Overflow (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116015. PoCs published by rgod.

AI-analyzed exploit summary This PHP script generates a malicious .oce file targeting Oracle DataDirect ODBC Drivers (arsqls24.dll) via a stack-based buffer overflow in the HOST attribute. It crafts a malformed DSN string with an excessively long buffer to trigger a crash, demonstrating potential for arbitrary code execution.

Description

Oracle DataDirect ODBC Drivers - HOST Attribute 'arsqls24.dll' Stack Buffer Overflow (PoC)

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpdoswindows
https://www.exploit-db.com/exploits/18052

This PHP script generates a malicious .oce file targeting Oracle DataDirect ODBC Drivers (arsqls24.dll) via a stack-based buffer overflow in the HOST attribute. It crafts a malformed DSN string with an excessively long buffer to trigger a crash, demonstrating potential for arbitrary code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Oracle DataDirect ODBC Drivers (arsqls24.dll) via Hyperion Interactive Reporting Studio
No auth needed
Prerequisites: Victim must open the malicious .oce file · Oracle Hyperion Suite with vulnerable ODBC drivers installed
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026