EIP-2026-117669

PRE-CVE

NCMedia Sound Editor Pro 7.5.1 - 'MRUList201202.dat' File Handling Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117669. PoCs published by Julien Ahrens.

AI-analyzed exploit summary This exploit leverages a local buffer overflow in NCMedia Sound Editor Pro v7.5.1 by crafting a malicious MRUList201202.dat file. It uses a structured payload with NOP sled, shellcode, and precise EIP/ESP manipulation to achieve arbitrary code execution (calc.exe).

Description

NCMedia Sound Editor Pro 7.5.1 - 'MRUList201202.dat' File Handling Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by Julien Ahrens · pythonlocalwindows
https://www.exploit-db.com/exploits/21331

This exploit leverages a local buffer overflow in NCMedia Sound Editor Pro v7.5.1 by crafting a malicious MRUList201202.dat file. It uses a structured payload with NOP sled, shellcode, and precise EIP/ESP manipulation to achieve arbitrary code execution (calc.exe).

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: NCMedia Sound Editor Pro v7.5.1
No auth needed
Prerequisites: Ability to write to %appdata%\Sound Editor Pro\ · Victim interaction (launching the application)
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026