Unauthenticated UDP Packet Injection in MOOS Essential-MOOS by TheMOOS
CVE-2026-85431
8.7HIGH
What is CVE-2026-85431?
MOOS Essential-MOOS up to version 10.0.1 contains a vulnerability allowing attackers to exploit unauthenticated UDP packet injection through the pMOOSBridge component when configured with UDPListen. This flaw permits the injection of arbitrary variables into the local MOOS community by sending crafted UDP packets, which can have spoofed source and community identifiers, potentially compromising system integrity and confidentiality.
Affected Version(s)
essential-moos 0 <= 10.0.1
