EIP-2026-119136

PRE-CVE

Sienzo Digital Music Mentor 2.6.0.4 - SetEvalExpiryDate EIP Overwrite

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119136. PoCs published by Parveen Vashishtha.

AI-analyzed exploit summary This exploit targets a stack overflow vulnerability in Sienzo Digital Music Mentor (DMM) 2.6.0.4 via the SetEvalExpiryDate method in DSKernel2.dll. It overwrites the EIP register to execute shellcode, launching calc.exe as a proof-of-concept.

Description

Sienzo Digital Music Mentor 2.6.0.4 - SetEvalExpiryDate EIP Overwrite

Exploits (1)

exploitdb WORKING POC VERIFIED
by Parveen Vashishtha · htmlremotewindows
https://www.exploit-db.com/exploits/3881

This exploit targets a stack overflow vulnerability in Sienzo Digital Music Mentor (DMM) 2.6.0.4 via the SetEvalExpiryDate method in DSKernel2.dll. It overwrites the EIP register to execute shellcode, launching calc.exe as a proof-of-concept.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Sienzo Digital Music Mentor (DMM) 2.6.0.4
No auth needed
Prerequisites: Target system with Sienzo DMM 2.6.0.4 installed · ActiveX control must be accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026