PT-2026-106739 · Microsoft · Ufo
CVE-2026-105789
·
Published
2026-10-06
·
Updated
2026-10-06
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
Microsoft UFO versions prior to 3.0.9
Description
The
execute command tool in ufo/client/mcp/http servers/linux mcp server.py incorrectly classifies sort and uniq as read-only commands. An authenticated caller can exploit the free-form command parameter to use the sort -o flag or the second uniq operand to create or overwrite files that the UFO server process has permission to write. This occurs because the binary opens the destination file directly and the argument policy fails to reject the operation. This behavior can lead to the corruption of configuration files or other writable data, resulting in service disruption, although it does not allow for direct file disclosure or arbitrary code execution.Recommendations
Update to version 3.0.9.
As a temporary mitigation, restrict the use of the
execute command tool or limit the permissions of the UFO server process to prevent unauthorized file overwrites.Exploit
Fix
Incomplete List of Disallowed Inputs
Argument Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ufo