EIP-2026-116554
PRE-CVEWinMerge 2.12.4 - Project File Handling Stack Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116554. PoCs published by LiquidWorm.
AI-analyzed exploit summary This Perl script generates a malicious .winmerge project file that exploits a stack overflow vulnerability in WinMerge v2.12.4 by crafting a buffer overflow payload. The exploit leverages improper input sanitization in the project file parser to achieve potential arbitrary code execution.
Description
WinMerge 2.12.4 - Project File Handling Stack Overflow
Exploits (1)
This Perl script generates a malicious .winmerge project file that exploits a stack overflow vulnerability in WinMerge v2.12.4 by crafting a buffer overflow payload. The exploit leverages improper input sanitization in the project file parser to achieve potential arbitrary code execution.