EIP-2026-116568
PRE-CVEWinZip 15.0 - WZFLDVW.OCX Text Property Denial of Service
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-116568. PoCs published by Fady Mohammed Osman.
AI-analyzed exploit summary This exploit demonstrates an access violation in WinZip's WZFLDVW.OCX ActiveX control by passing an overly long string to the 'Text' property, causing a crash at PUSH DWORD PTR [ECX+20]. The PoC is written in VBScript and targets a specific version of WinZip on Windows XP SP2.
Description
WinZip 15.0 - WZFLDVW.OCX Text Property Denial of Service
Exploits (1)
This exploit demonstrates an access violation in WinZip's WZFLDVW.OCX ActiveX control by passing an overly long string to the 'Text' property, causing a crash at PUSH DWORD PTR [ECX+20]. The PoC is written in VBScript and targets a specific version of WinZip on Windows XP SP2.