EIP-2026-118432

PRE-CVE

DivX Player 2.6 - '.Skin' File Directory Traversal

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118432. PoCs published by Luigi Auriemma.

AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in DivX Player when processing DPS '.dps' archive files. An attacker could exploit this to save malicious files in arbitrary locations, potentially leading to code execution upon system restart or file overwrites with user privileges.

Description

DivX Player 2.6 - '.Skin' File Directory Traversal

Exploits (1)

exploitdb WRITEUP VERIFIED
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/25057

The provided text describes a directory traversal vulnerability in DivX Player when processing DPS '.dps' archive files. An attacker could exploit this to save malicious files in arbitrary locations, potentially leading to code execution upon system restart or file overwrites with user privileges.

Classification
Writeup 80%
Attack Type
Other
Complexity
Moderate
Reliability
Theoretical
Target: DivX Player (version not specified)
No auth needed
Prerequisites: Access to deliver a malicious '.dps' file to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026