EIP-2026-117418
PRE-CVELiquidXML Studio 2012 - ActiveX Insecure Method Executable File Creation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117418. PoCs published by Dr_IDE.
AI-analyzed exploit summary This exploit leverages an insecure ActiveX method in LiquidXML Studio 2012 to create an executable file in the Windows Startup folder, achieving remote code execution (RCE) via a crafted HTML file. The exploit uses the `OpenFile` and `AppendString` methods to write a malicious HTA file that executes arbitrary commands.
Description
LiquidXML Studio 2012 - ActiveX Insecure Method Executable File Creation
Exploits (1)
This exploit leverages an insecure ActiveX method in LiquidXML Studio 2012 to create an executable file in the Windows Startup folder, achieving remote code execution (RCE) via a crafted HTML file. The exploit uses the `OpenFile` and `AppendString` methods to write a malicious HTA file that executes arbitrary commands.