EIP-2026-116224

PRE-CVE

Schneider Electric InduSoft Web Studio and InTouch Machine Edition - Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116224. PoCs published by Tenable NS.

AI-analyzed exploit summary This exploit leverages a buffer overflow vulnerability in Schneider Electric's InduSoft Web Studio and InTouch Machine Edition to achieve remote code execution. The PoC sends a crafted payload via netcat to trigger the vulnerability.

Description

Schneider Electric InduSoft Web Studio and InTouch Machine Edition - Denial of Service

Exploits (1)

exploitdb WORKING POC
by Tenable NS · textdoswindows
https://www.exploit-db.com/exploits/44572

This exploit leverages a buffer overflow vulnerability in Schneider Electric's InduSoft Web Studio and InTouch Machine Edition to achieve remote code execution. The PoC sends a crafted payload via netcat to trigger the vulnerability.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Schneider Electric InduSoft Web Studio < v8.1 SP1, InTouch Machine Edition 2017 < v8.1 SP1
No auth needed
Prerequisites: Network access to the target system · Target system running vulnerable software
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026