EIP-2026-118897
PRE-CVEMicrosoft Windows XP/2003 - Metafile Escape() Code Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118897. PoCs published by H D Moore.
AI-analyzed exploit summary This Metasploit module exploits a vulnerability in the GDI library of Windows XP/2003 via a crafted WMF file. It uses the 'Escape' metafile function to execute arbitrary code through the SetAbortProc procedure, generating a random WMF record stream for each request.
Description
Microsoft Windows XP/2003 - Metafile Escape() Code Execution (Metasploit)
Exploits (1)
This Metasploit module exploits a vulnerability in the GDI library of Windows XP/2003 via a crafted WMF file. It uses the 'Escape' metafile function to execute arbitrary code through the SetAbortProc procedure, generating a random WMF record stream for each request.