EIP-2026-116987

PRE-CVE

Congstar Internet Manager - Local Buffer Overflow (SEH)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-116987. PoCs published by metacom.

AI-analyzed exploit summary This exploit targets a SEH buffer overflow vulnerability in Congstar Internet-Manager (version 14.0.0.162) by crafting a malicious UpdateCfg.ini file. It leverages a structured exception handler (SEH) overwrite to execute arbitrary shellcode, which in this case spawns calc.exe as a proof-of-concept.

Description

Congstar Internet Manager - Local Buffer Overflow (SEH)

Exploits (1)

exploitdb WORKING POC VERIFIED
by metacom · pythonlocalwindows
https://www.exploit-db.com/exploits/35813

This exploit targets a SEH buffer overflow vulnerability in Congstar Internet-Manager (version 14.0.0.162) by crafting a malicious UpdateCfg.ini file. It leverages a structured exception handler (SEH) overwrite to execute arbitrary shellcode, which in this case spawns calc.exe as a proof-of-concept.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Congstar Internet-Manager 14.0.0.162
No auth needed
Prerequisites: Victim must open the malicious UpdateCfg.ini file via the Congstar Internet-Manager application · Target system must be running Windows 7 (tested environment)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026