eAI Technologies ERP DLL Hijacking Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A DLL hijacking vulnerability has been identified in the ERP software developed by eAI Technologies, specifically in the ERP F2 version. This vulnerability allows authenticated local attackers to place a malicious DLL file in the same directory as the program. Once the crafted DLL is in place, it can be used to execute arbitrary code.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of code with the privileges of the user running the ERP application.

Remediation

Users are advised to upgrade to ERP F10, which is the PowerBuilder 2025 version.

Added: Feb 23, 2026, 4:17 AM
Updated: Feb 23, 2026, 4:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
3.3
remediation
0.0
relevance
3.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.