PT-2026-106739 · Microsoft · Ufo

CVE-2026-105789

·

Published

2026-10-06

·

Updated

2026-10-06

CVSS v3.1

5.4

Medium

VectorAV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Microsoft UFO versions prior to 3.0.9
Description The execute command tool in ufo/client/mcp/http servers/linux mcp server.py incorrectly classifies sort and uniq as read-only commands. An authenticated caller can exploit the free-form command parameter to use the sort -o flag or the second uniq operand to create or overwrite files that the UFO server process has permission to write. This occurs because the binary opens the destination file directly and the argument policy fails to reject the operation. This behavior can lead to the corruption of configuration files or other writable data, resulting in service disruption, although it does not allow for direct file disclosure or arbitrary code execution.
Recommendations Update to version 3.0.9. As a temporary mitigation, restrict the use of the execute command tool or limit the permissions of the UFO server process to prevent unauthorized file overwrites.

Exploit

Fix

Incomplete List of Disallowed Inputs

Argument Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-105789
GHSA-85W2-WGGF-RW49

Affected Products

Ufo