EIP-2026-118654

PRE-CVE

httpdx 0.5b - FTP Server (USER) Remote Buffer Overflow (SEH)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-118654. PoCs published by His0k4.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in httpdx FTP Server (USER command) by sending a crafted payload with shellcode to execute arbitrary code (calc.exe). It leverages SEH overwriting and relies on the presence of idmmbc.dll from Internet Download Manager.

Description

httpdx 0.5b - FTP Server (USER) Remote Buffer Overflow (SEH)

Exploits (1)

exploitdb WORKING POC VERIFIED
by His0k4 · pythonremotewindows
https://www.exploit-db.com/exploits/8716

This exploit targets a buffer overflow vulnerability in httpdx FTP Server (USER command) by sending a crafted payload with shellcode to execute arbitrary code (calc.exe). It leverages SEH overwriting and relies on the presence of idmmbc.dll from Internet Download Manager.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: httpdx FTP Server <= 0.5b
No auth needed
Prerequisites: Target running httpdx FTP Server <= 0.5b · Internet Download Manager installed (for idmmbc.dll) · Network access to port 21
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026