CVE-2026-79574
mpush · gateway server
A critical vulnerability in the mpush gateway server allows unauthenticated remote attackers to execute arbitrary code by sending a specially crafted broadcast message.
Executive summary
A critical remote code execution vulnerability in the mpush gateway server poses a severe risk to system integrity and confidentiality.
Vulnerability
This is a remote code execution vulnerability triggered by the processing of a malicious broadcast message. The CVSS vector of AV:N/AC:L/PR:N confirms that this flaw is exploitable by unauthenticated attackers over the network with low complexity.
Business impact
Successful exploitation of this vulnerability allows an attacker to achieve full remote code execution on the affected gateway server. Given the CVSS score of 9.8, this represents a critical risk that could lead to complete system compromise, unauthorized data exfiltration, and significant operational disruption.
Remediation
Immediate Action: As there is no official patch currently available, administrators should immediately isolate the affected mpush gateway server from public-facing networks.
Proactive Monitoring: Monitor network traffic for anomalous broadcast messages or unexpected outbound connections originating from the gateway server that may indicate successful exploitation.
Compensating Controls: Deploy a Web Application Firewall or network intrusion detection system with rules configured to inspect and block malformed broadcast messages targeting the gateway service.
Exploitation status
Public Exploit Available: Yes, a public proof-of-concept exists as documented in the researcher's technical write-up provided in the references.
Analyst recommendation
Due to the critical nature of this remote code execution flaw and the existence of a public proof-of-concept, the risk of exploitation is high. Organizations utilizing mpush v0.8.1 must prioritize restricting access to the affected component immediately. Continue to monitor vendor channels for the release of a security update and apply it as soon as it becomes available.
History
CVE Brief tracked this CVE 1 day before it had a CVSS score.
- Disclosed CVE record published
- Collected by CVE Brief No CVSS score yet; tracked as early warning
- CVSS score assigned 9.8 (3.1)
- Analyst report written