EIP-2026-116752

PRE-CVE

AIDA64 Engineer 6.20.5300 - 'Report File' filename Buffer Overflow (SEH)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116752. PoCs published by Hodorsec.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in AIDA64 Engineer 6.20.5300 via the 'Report File' filename field, overwriting SEH to achieve arbitrary code execution. It uses a structured payload with NOP sleds and alphanumeric shellcode to spawn calc.exe.

Description

AIDA64 Engineer 6.20.5300 - 'Report File' filename Buffer Overflow (SEH)

Exploits (1)

exploitdb WORKING POC
by Hodorsec · pythonlocalwindows
https://www.exploit-db.com/exploits/48281

This exploit targets a buffer overflow vulnerability in AIDA64 Engineer 6.20.5300 via the 'Report File' filename field, overwriting SEH to achieve arbitrary code execution. It uses a structured payload with NOP sleds and alphanumeric shellcode to spawn calc.exe.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: AIDA64 Engineer v6.20.5300
No auth needed
Prerequisites: Windows 7 x86 SP1 · AIDA64 Engineer installed · User interaction to trigger the exploit
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026