EIP-2026-119644
PRE-CVEMySQL 5.5.45 (x64) - Local Credentials Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-119644. PoCs published by Yakir Wizman.
AI-analyzed exploit summary This exploit demonstrates a local credentials disclosure vulnerability in MySQL 5.5.45 by scanning the process memory for plaintext username and password patterns. It uses the winappdbg library to read memory and extract credentials stored in plaintext.
Description
MySQL 5.5.45 (x64) - Local Credentials Disclosure
Exploits (1)
exploitdb
WORKING POC
by Yakir Wizman · pythonlocalwindows_x86-64
https://www.exploit-db.com/exploits/40337
This exploit demonstrates a local credentials disclosure vulnerability in MySQL 5.5.45 by scanning the process memory for plaintext username and password patterns. It uses the winappdbg library to read memory and extract credentials stored in plaintext.
Classification
Working Poc 95%
Attack Type
Info Leak
Complexity
Moderate
Reliability
Reliable
Target:
MySQL 5.5.45 (64bit)
No auth needed
Prerequisites:
Local access to the target system · MySQL process running
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026