Back

CRITICAL

Microsoft UFO: Unauthenticated Mobile MCP access allows remote Android device control and screen disclosure

Published Aug 12, 2026

Description

Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, create_mobile_data_collection_server and create_mobile_action_server in ufo/client/mcp/http_servers/mobile_mcp_server.py exposed Streamable HTTP MCP services on TCP ports 8020 and 8021 without authentication, allowing an unauthenticated remote attacker to invoke capture_screenshot, get_ui_tree, tap, swipe, type_text, launch_app, press_key, and click_control against an ADB-connected Android device, disclose screen and device data, and modify device state. This issue is fixed in version 3.0.8.

Affected products

Remediation

No remediation recorded yet.

References (3)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitHub_M
Published Aug 12, 2026
Updated Aug 13, 2026
Reserved Aug 11, 2026
CISA Vulnrichment
Updated Aug 13, 2026
NVD
Status Awaiting Analysis
Modified Sep 18, 2026
Red Hat
Severity n/a
Public date n/a