EIP-2026-117613

PRE-CVE

Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter - Local Stack Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117613. PoCs published by Praveen Darshanam.

AI-analyzed exploit summary This exploit demonstrates a stack-based buffer overflow in Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter by crafting a malicious M3U file. It overwrites the EIP with a JMP ESP instruction and executes shellcode to spawn calc.exe.

Description

Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter - Local Stack Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by Praveen Darshanam · pythonlocalwindows
https://www.exploit-db.com/exploits/14532

This exploit demonstrates a stack-based buffer overflow in Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter by crafting a malicious M3U file. It overwrites the EIP with a JMP ESP instruction and executes shellcode to spawn calc.exe.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Mini-stream RM-MP3 Converter/WMDownloader/ASX to MP3 Converter
No auth needed
Prerequisites: Victim must open the malicious M3U file with the vulnerable software
devstral-2 · analyzed Feb 19, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026