EIP-2026-118398
PRE-CVEDATAC RealWin SCADA Server 2 - On_FC_CONNECT_FCS_a_FILE Buffer Overflow (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118398. PoCs published by Metasploit.
AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in DATAC RealWin SCADA Server 2.1 (Build 6.1.8.10) via a crafted On_FC_BINFILE_FCS_*FILE packet sent to port 910, allowing remote code execution. The exploit leverages an SEH overwrite with a universal return address (0x4002da21) in FlexMLang.DLL.
Description
DATAC RealWin SCADA Server 2 - On_FC_CONNECT_FCS_a_FILE Buffer Overflow (Metasploit)
Exploits (1)
This Metasploit module exploits a stack-based buffer overflow in DATAC RealWin SCADA Server 2.1 (Build 6.1.8.10) via a crafted On_FC_BINFILE_FCS_*FILE packet sent to port 910, allowing remote code execution. The exploit leverages an SEH overwrite with a universal return address (0x4002da21) in FlexMLang.DLL.