EIP-2026-117925
PRE-CVESolarWinds Kiwi CatTools 3.11.8 - Unquoted Service Path
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-117925. PoCs published by Mert Daş.
AI-analyzed exploit summary This is a writeup describing an unquoted service path vulnerability in SolarWinds Kiwi CatTools 3.11.8. It explains how to identify the vulnerability and the potential impact, but does not include functional exploit code.
Description
SolarWinds Kiwi CatTools 3.11.8 - Unquoted Service Path
Exploits (1)
exploitdb
WRITEUP
by Mert Daş · textlocalwindows
https://www.exploit-db.com/exploits/50416
This is a writeup describing an unquoted service path vulnerability in SolarWinds Kiwi CatTools 3.11.8. It explains how to identify the vulnerability and the potential impact, but does not include functional exploit code.
Classification
Writeup 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target:
SolarWinds Kiwi CatTools 3.11.8
Auth required
Prerequisites:
Local access to the system · Ability to write to the system root path
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026