EIP-2026-118607

PRE-CVE

GlobalLink 'GLChat.ocx' 2.5.1 - ActiveX Control 'ChatRoom()' Remote Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118607. PoCs published by Knell.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the GlobalLink 'GLChat.ocx' ActiveX control (version 2.5.1.33). It generates an HTML file with malicious JavaScript that triggers the overflow, executing arbitrary shellcode in the context of the application using the ActiveX control (typically Internet Explorer).

Description

GlobalLink 'GLChat.ocx' 2.5.1 - ActiveX Control 'ChatRoom()' Remote Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by Knell · c++remotewindows
https://www.exploit-db.com/exploits/31046

This exploit targets a buffer overflow vulnerability in the GlobalLink 'GLChat.ocx' ActiveX control (version 2.5.1.33). It generates an HTML file with malicious JavaScript that triggers the overflow, executing arbitrary shellcode in the context of the application using the ActiveX control (typically Internet Explorer).

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: GlobalLink GLChat.ocx ActiveX control 2.5.1.33
No auth needed
Prerequisites: Victim must visit a malicious webpage hosting the exploit · ActiveX control must be installed and enabled in the target application
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026