EIP-2026-118592

PRE-CVE

FTPDMIN 0.96 (Windows XP SP3) - 'RNFR' Remote Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118592. PoCs published by surfista.

AI-analyzed exploit summary This is a functional exploit for a buffer overflow vulnerability in ftpdmin v0.96. It leverages the RNFR command to overwrite EIP and execute shellcode, adding an admin user 'surfista' with password 'pass'.

Description

FTPDMIN 0.96 (Windows XP SP3) - 'RNFR' Remote Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by surfista · phpremotewindows
https://www.exploit-db.com/exploits/8398

This is a functional exploit for a buffer overflow vulnerability in ftpdmin v0.96. It leverages the RNFR command to overwrite EIP and execute shellcode, adding an admin user 'surfista' with password 'pass'.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ftpdmin v0.96
Auth required
Prerequisites: Network access to the FTP server · Valid FTP credentials (anonymous or otherwise)
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026