EIP-2026-116567
PRE-CVEWinZip 15.0 - WZFLDVW.OCX IconIndex Property Denial of Service
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116567. PoCs published by Fady Mohammed Osman.
AI-analyzed exploit summary This exploit triggers an access violation in WinZip's WZFLDVW.OCX by setting the IconIndex property to an invalid value (-1), causing a crash due to a NULL pointer dereference. The PoC is written in VBScript and embedded in an XML file, targeting a specific version of WinZip on Windows XP SP2.
Description
WinZip 15.0 - WZFLDVW.OCX IconIndex Property Denial of Service
Exploits (1)
This exploit triggers an access violation in WinZip's WZFLDVW.OCX by setting the IconIndex property to an invalid value (-1), causing a crash due to a NULL pointer dereference. The PoC is written in VBScript and embedded in an XML file, targeting a specific version of WinZip on Windows XP SP2.