Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-119004. PoCs published by pyrokinesis.
AI-analyzed exploit summary This is a functional exploit for a stack-based buffer overflow in the Oracle Document Capture BlackIce DEVMODE ActiveX control. It leverages a long string of 'A's to overflow the buffer, followed by a return address pointing to a 'call esp' instruction in user32.dll, and includes shellcode to execute arbitrary commands.
Description
Oracle - Document Capture BlackIce DEVMODE
Exploits (1)
This is a functional exploit for a stack-based buffer overflow in the Oracle Document Capture BlackIce DEVMODE ActiveX control. It leverages a long string of 'A's to overflow the buffer, followed by a return address pointing to a 'call esp' instruction in user32.dll, and includes shellcode to execute arbitrary commands.