EIP-2026-119279

PRE-CVE

WinaXe 7.7 'FTP client' - Remote Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119279. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates a remote buffer overflow in WinaXe v7.7 FTP client by sending a maliciously crafted '220' response with a payload that overwrites the EIP and executes shellcode to spawn calc.exe. The exploit sets up a malicious FTP server to trigger the vulnerability upon client connection.

Description

WinaXe 7.7 'FTP client' - Remote Buffer Overflow

Exploits (1)

exploitdb WORKING POC VERIFIED
by hyp3rlinx · pythonremotewindows
https://www.exploit-db.com/exploits/40693

This exploit demonstrates a remote buffer overflow in WinaXe v7.7 FTP client by sending a maliciously crafted '220' response with a payload that overwrites the EIP and executes shellcode to spawn calc.exe. The exploit sets up a malicious FTP server to trigger the vulnerability upon client connection.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: WinaXe v7.7 FTP Client
No auth needed
Prerequisites: Network access to the target FTP client · Target must initiate a connection to the malicious FTP server
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026