EIP-2026-119135

PRE-CVE

Sienzo Digital Music Mentor - 'DSKernel2.dll' ActiveX Control Stack Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119135. PoCs published by shinnai.

AI-analyzed exploit summary This is a functional exploit for a stack-based buffer overflow in Sienzo Digital Music Mentor's ActiveX control (DSKernel2.dll). It leverages two vulnerable methods (LockModules and UnlockModule) to execute arbitrary code (calc.exe) via a crafted payload.

Description

Sienzo Digital Music Mentor - 'DSKernel2.dll' ActiveX Control Stack Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by shinnai · htmlremotewindows
https://www.exploit-db.com/exploits/29952

This is a functional exploit for a stack-based buffer overflow in Sienzo Digital Music Mentor's ActiveX control (DSKernel2.dll). It leverages two vulnerable methods (LockModules and UnlockModule) to execute arbitrary code (calc.exe) via a crafted payload.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Sienzo Digital Music Mentor 2.6.0.4 (DSKernel2.dll v. 1.0.0.57)
No auth needed
Prerequisites: Victim must visit a malicious webpage hosting the exploit · ActiveX control must be installed and enabled
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026