EIP-2026-118981
PRE-CVEOffice Viewer ActiveX Control 3.0.1 - Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118981. PoCs published by Houssamix.
AI-analyzed exploit summary This exploit leverages an insecure ActiveX method 'OpenWebFile()' in Office Viewer ActiveX Control v3.0.1 to execute remote files on a victim's machine. The PoC demonstrates remote code execution via a crafted HTML page that triggers the vulnerable method when a button is clicked.
Description
Office Viewer ActiveX Control 3.0.1 - Remote Command Execution
Exploits (1)
This exploit leverages an insecure ActiveX method 'OpenWebFile()' in Office Viewer ActiveX Control v3.0.1 to execute remote files on a victim's machine. The PoC demonstrates remote code execution via a crafted HTML page that triggers the vulnerable method when a button is clicked.