EIP-2026-117043

PRE-CVE

DigitalPersona 4.5.0.2213 - 'DpHostW' Unquoted Service Path

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117043. PoCs published by SamAlucard.

AI-analyzed exploit summary This is a technical writeup detailing an unquoted service path vulnerability in DigitalPersona 4.5.0.2213. The vulnerability allows local privilege escalation due to improper handling of spaces in the service path, which could be exploited to execute arbitrary code with elevated privileges.

Description

DigitalPersona 4.5.0.2213 - 'DpHostW' Unquoted Service Path

Exploits (1)

exploitdb WRITEUP
by SamAlucard · textlocalwindows
https://www.exploit-db.com/exploits/49008

This is a technical writeup detailing an unquoted service path vulnerability in DigitalPersona 4.5.0.2213. The vulnerability allows local privilege escalation due to improper handling of spaces in the service path, which could be exploited to execute arbitrary code with elevated privileges.

Classification
Writeup 90%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target: DigitalPersona Pro 4.5.0.2213
Auth required
Prerequisites: Local access to the system · Ability to write to the root of the system drive or another location in the unquoted path
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026