EIP-2026-118061

PRE-CVE

VirIT Explorer Lite & Pro 8.1.68 - Local Privilege Escalation

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118061. PoCs published by Paolo Stagno.

AI-analyzed exploit summary This exploit leverages insecure file permissions on the VirIT Explorer Lite & Pro service executable to replace it with a malicious version, achieving local privilege escalation to SYSTEM via a meterpreter reverse shell. The exploit demonstrates a service hijacking technique due to overly permissive ACLs.

Description

VirIT Explorer Lite & Pro 8.1.68 - Local Privilege Escalation

Exploits (1)

exploitdb WORKING POC
by Paolo Stagno · clocalwindows
https://www.exploit-db.com/exploits/39843

This exploit leverages insecure file permissions on the VirIT Explorer Lite & Pro service executable to replace it with a malicious version, achieving local privilege escalation to SYSTEM via a meterpreter reverse shell. The exploit demonstrates a service hijacking technique due to overly permissive ACLs.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: VirIT Explorer Lite & Pro v.8.1.68
No auth needed
Prerequisites: Local access to the target system · VirIT Explorer Lite/Pro v.8.1.68 installed with default permissions · Ability to replace the viritsvc.exe executable
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026