EIP-2026-117520
PRE-CVEMicrosoft Windows - Contact File Format Arbitary Code Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117520. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits a vulnerability in Microsoft Windows Contact File Format by embedding a malicious executable path in a .contact file. When the user clicks the URL link in the contact file, it executes the embedded executable instead of navigating to a website.
Description
Microsoft Windows - Contact File Format Arbitary Code Execution (Metasploit)
Exploits (1)
This Metasploit module exploits a vulnerability in Microsoft Windows Contact File Format by embedding a malicious executable path in a .contact file. When the user clicks the URL link in the contact file, it executes the embedded executable instead of navigating to a website.