EIP-2026-117815

PRE-CVE

Quick Search 1.1.0.189 - search textbox Buffer Overflow (SEH Unicode) (Egghunter)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117815. PoCs published by Tomislav Paskalev.

AI-analyzed exploit summary This exploit targets a Unicode SEH-based buffer overflow in Quick Search 1.1.0.189 via the search textbox, using an egghunter to locate and execute shellcode. It leverages a non-SafeSEH module (gtms_D7.bpl) for reliable exploitation on Windows XP SP2.

Description

Quick Search 1.1.0.189 - search textbox Buffer Overflow (SEH Unicode) (Egghunter)

Exploits (1)

exploitdb WORKING POC VERIFIED
by Tomislav Paskalev · perllocalwindows
https://www.exploit-db.com/exploits/36822

This exploit targets a Unicode SEH-based buffer overflow in Quick Search 1.1.0.189 via the search textbox, using an egghunter to locate and execute shellcode. It leverages a non-SafeSEH module (gtms_D7.bpl) for reliable exploitation on Windows XP SP2.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Quick Search v1.1.0.189
No auth needed
Prerequisites: Vulnerable Quick Search installation · User interaction to paste exploit string
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026