SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-56758

MEDIUM · CVSS 6.5 EPSS 0.18% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A vulnerability exists in the ACSE layer that affects the processing of AARQ PDUs during MMS connection establishment, allowing an attacker to exploit a controlled length value of zero or one in the calling AP title. This flaw can lead to buffer overflow conditions, potentially enabling arbitrary code execution or denial of service. Organizations utilizing systems that implement MMS protocols should prioritize addressing this vulnerability to mitigate associated risks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-56758
Severity
MEDIUM
CVSS
6.5
EPSS
0.18%

Original NVD Description

The ACSE layer contains a flaw in the processing of AARQ PDUs during MMS connection establishment. When parsing certain fields within the calling AP title, an attacker controlled length value of zero or one may cause the parser to read past the end of a heap buffer.