CVE-2026-27182Disclosure

LOWCVSS 8.6 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Saturn Remote Mouse Server contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary commands by sending specially crafted UDP JSON frames to port 27000. Attackers on the local network can send malformed packets with unsanitized command data that the service forwards directly to OS execution functions, enabling remote code execution under the service account.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 1 mentions (2026-02-18); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-18: 1Mentions · 2026-02-19: 1Mentions · 2026-03-24: 1Technical Details · 2026-02-18: 1Technical Details · 2026-02-19: 1Technical Details · 2026-03-24: 102-1802-1903-24
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-27182 Unauthenticated Remote Code Execution in Saturn Remote Mouse Server via UDP JSON Injection https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-27182

    Post summary

    The post announces CVE-2026-27182, describing an unauthenticated remote code execution vulnerability in Saturn Remote Mouse Server that exploits UDP JSON injection.

    0001052
    4.0K followersView on X
  • White Rabbitx@TheRabbitPy
    Disclosure

    🚨 CVE-2026-27182 (CVSS 9.3): Saturn Remote Mouse Server command injection → unauth RCE via crafted input. IoT mouse takeover! https://feedly.com/cve/severity/8-9?page=7

    Post summary

    The text announces CVE-2026-27182, a high‑severity command injection flaw in Saturn Remote Mouse Server that allows unauthenticated remote code execution in IoT mouse devices.

    0000062
    418 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-27182 Saturn Remote Mouse Server contains a command injection vulnerability that allows unauthenticated attackers to execute arbitrary commands by sending specially crafted… https://www.cve.org/CVERecord?id=CVE-2026-27182

    Post summary

    A command injection flaw in Saturn Remote Mouse Server enables unauthenticated attackers to execute arbitrary commands; no PoC, exploit code, or patch details are provided.

    00000115
    56.4K followersView on X

Explore more