EIP-2026-119533

PRE-CVE

iSmartViewPro 1.5 - 'DDNS' Buffer Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-119533. PoCs published by Luis Martínez.

AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in iSmartViewPro 1.5 by crafting a malicious payload that overwrites the EIP register with a JMP ESP instruction, followed by NOP sleds and shellcode for a bind shell. The exploit requires user interaction to paste the payload into the 'DDNS/IP/DID' field during device setup.

Description

iSmartViewPro 1.5 - 'DDNS' Buffer Overflow

Exploits (1)

exploitdb WORKING POC
by Luis Martínez · pythonlocalwindows_x86
https://www.exploit-db.com/exploits/45325

This exploit demonstrates a buffer overflow vulnerability in iSmartViewPro 1.5 by crafting a malicious payload that overwrites the EIP register with a JMP ESP instruction, followed by NOP sleds and shellcode for a bind shell. The exploit requires user interaction to paste the payload into the 'DDNS/IP/DID' field during device setup.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: iSmartViewPro 1.5
No auth needed
Prerequisites: User interaction to paste payload into the application · Network access to the target system
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026