EIP-2026-118614
PRE-CVEGoogle Apps - mailto URI handler cross-browser Remote command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118614. PoCs published by pyrokinesis.
AI-analyzed exploit summary This exploit leverages a deprecated URI handler in Google Apps to execute arbitrary commands via Chrome's command-line switches. It demonstrates remote command execution by injecting malicious parameters into the `googleapps.url.mailto://` handler, affecting Internet Explorer and Chrome.
Description
Google Apps - mailto URI handler cross-browser Remote command Execution
Exploits (1)
This exploit leverages a deprecated URI handler in Google Apps to execute arbitrary commands via Chrome's command-line switches. It demonstrates remote command execution by injecting malicious parameters into the `googleapps.url.mailto://` handler, affecting Internet Explorer and Chrome.