EIP-2026-117078
PRE-CVEDup Scout Enterprise 9.9.14 - 'Input Directory' Local Buffer Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117078. PoCs published by Touhid M.Shaikh.
AI-analyzed exploit summary This exploit demonstrates a local buffer overflow in Dup Scout Enterprise v9.9.14 by crafting a malicious input directory path that triggers arbitrary code execution (calc.exe) via a carefully constructed payload. The exploit uses a JMP EBX instruction to redirect execution flow and includes a msfvenom-generated shellcode with bad character avoidance.
Description
Dup Scout Enterprise 9.9.14 - 'Input Directory' Local Buffer Overflow
Exploits (1)
This exploit demonstrates a local buffer overflow in Dup Scout Enterprise v9.9.14 by crafting a malicious input directory path that triggers arbitrary code execution (calc.exe) via a carefully constructed payload. The exploit uses a JMP EBX instruction to redirect execution flow and includes a msfvenom-generated shellcode with bad character avoidance.