EIP-2026-116093

PRE-CVE

PPstream 2.6.86.8900 - PPSMediaList ActiveX Remote Buffer Overflow (PoC) (2)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116093. PoCs published by expose 0day.

AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in the PPStream MList.ocx COM object via an overly long 'Keyword' parameter. The PoC demonstrates potential for remote code execution (RCE) by overflowing the buffer with a long string of 'x' characters.

Description

PPstream 2.6.86.8900 - PPSMediaList ActiveX Remote Buffer Overflow (PoC) (2)

Exploits (1)

exploitdb WORKING POC VERIFIED
by expose 0day · textdoswindows
https://www.exploit-db.com/exploits/9585

This exploit leverages a buffer overflow vulnerability in the PPStream MList.ocx COM object via an overly long 'Keyword' parameter. The PoC demonstrates potential for remote code execution (RCE) by overflowing the buffer with a long string of 'x' characters.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: PPStream MList.ocx (Version 2.6.86.8900)
No auth needed
Prerequisites: PPStream installed with vulnerable MList.ocx · Victim must load the malicious HTML/COM object
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026