EIP-2026-117320

PRE-CVE

Inmatrix Ltd. Zoom Player 8.5 - '.jpeg'File Memory Corruption / Arbitrary Code Execution

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117320. PoCs published by Debasish Mandal.

AI-analyzed exploit summary This exploit targets a memory corruption vulnerability in Zoom Player v8.5 via a crafted JPEG file, leading to arbitrary code execution. The payload appears to manipulate JPEG metadata and includes shellcode-like sequences.

Description

Inmatrix Ltd. Zoom Player 8.5 - '.jpeg'File Memory Corruption / Arbitrary Code Execution

Exploits (1)

exploitdb WORKING POC VERIFIED
by Debasish Mandal · pythonlocalwindows
https://www.exploit-db.com/exploits/23996

This exploit targets a memory corruption vulnerability in Zoom Player v8.5 via a crafted JPEG file, leading to arbitrary code execution. The payload appears to manipulate JPEG metadata and includes shellcode-like sequences.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Zoom Player v8.5
No auth needed
Prerequisites: Victim must open the crafted JPEG file in Zoom Player v8.5
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026