CVE-2026-5777
Last modified
CVE-2026-5777 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. This vulnerability exists in the Atom 3x Projector due to improper exposure of the Android Debug Bridge (ADB) service over the local network without authentication or access controls. An unauthenticated attacker on the same network can exploit this vulnerability to obtain root-level access, leading to complete compromise of the targeted device.. EPSS estimates a 0.26% chance of exploitation in the next 30 days.
Description
This vulnerability exists in the Atom 3x Projector due to improper exposure of the Android Debug Bridge (ADB) service over the local network without authentication or access controls. An unauthenticated attacker on the same network can exploit this vulnerability to obtain root-level access, leading to complete compromise of the targeted device.
Metrics
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-5777?
How severe is CVE-2026-5777?
How do I fix CVE-2026-5777?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-57764Contributor Cross Site Scripting (XSS) in Surbma | Yoast SEO…6.5
- CVE-2026-57765Contributor SQL Injection in WP EasyCart <= 5.9.0 versions.8.5
- CVE-2026-57766Unauthenticated Cross Site Request Forgery (CSRF) in WPIDE –…8.8
- CVE-2026-57767Unauthenticated Cross Site Scripting (XSS) in WP Google Maps…7.1
- CVE-2026-57768Incorrect Privilege Assignment vulnerability in favethemes H…8.2
- CVE-2026-57769Unauthenticated Cross Site Scripting (XSS) in Grand Photogra…7.1
- CVE-2026-57770Deserialization of Untrusted Data vulnerability in ThemeGood…9.8
- CVE-2026-57771Improper Neutralization of Special Elements used in an SQL C…8.5
- CVE-2026-57772Improper Neutralization of Special Elements used in an SQL C…8.5
- CVE-2026-57773Improper Neutralization of Special Elements used in an SQL C…7.6
- CVE-2026-57774Missing Authorization vulnerability in vowelweb VW Food Corn…5.3
- CVE-2026-57776Missing Authorization vulnerability in vowelweb VW Wedding v…5.3
Are you affected by CVE-2026-5777?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
