EIP-2026-119051

PRE-CVE

Prime95 Version 30.7 build 9 - Remote Code Execution (RCE)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119051. PoCs published by Yehia Elghaly.

AI-analyzed exploit summary This exploit leverages a buffer overflow in Prime95 Version 30.7 build 9 to achieve remote code execution. It constructs a malicious payload with a NOP sled and shellcode to spawn calc.exe, targeting a specific return address in libhwloc-15.dll.

Description

Prime95 Version 30.7 build 9 - Remote Code Execution (RCE)

Exploits (1)

exploitdb WORKING POC
by Yehia Elghaly · pythonremotewindows
https://www.exploit-db.com/exploits/50905

This exploit leverages a buffer overflow in Prime95 Version 30.7 build 9 to achieve remote code execution. It constructs a malicious payload with a NOP sled and shellcode to spawn calc.exe, targeting a specific return address in libhwloc-15.dll.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Prime95 Version 30.7 build 9
No auth needed
Prerequisites: Prime95 Version 30.7 build 9 installed on Windows 7 Professional x86 · Access to the PrimeNet Connections settings
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026