EIP-2026-116290
PRE-CVESPlayer XvidDecoder 3.3 - ActiveX Remote Execution (PoC)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116290. PoCs published by superli.
AI-analyzed exploit summary This exploit leverages a vulnerable ActiveX control (CLSID: {E5960BC4-A76B-4211-BEEC-9AEE2AF8AAE6}) to trigger a use-after-free or memory corruption vulnerability in Internet Explorer 6 on Windows XP SP3. The minimal HTML object tag is sufficient to demonstrate the vulnerability when rendered in the target environment.
Description
SPlayer XvidDecoder 3.3 - ActiveX Remote Execution (PoC)
Exploits (1)
This exploit leverages a vulnerable ActiveX control (CLSID: {E5960BC4-A76B-4211-BEEC-9AEE2AF8AAE6}) to trigger a use-after-free or memory corruption vulnerability in Internet Explorer 6 on Windows XP SP3. The minimal HTML object tag is sufficient to demonstrate the vulnerability when rendered in the target environment.