Feed/CVE-2026-0073
CVE-2026-0073HIGHCVSS 8.8

CVE-2026-0073

Published May 4, 2026·Updated Jun 17, 2026

NVD Description

In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.

Public Exploits & PoCs16 found

PoC: CVE-2026-0073

An automated exploit for CVE-2026-0073 (Android ADB TLS Auth Bypass). Features a built-in mDNS/Zeroconf scanner to instantly discover randomized Wireless Debugging ports on Android 13+ and establishes a fully interactive raw PTY shell.

4

PoC: CVE-2026-0073

https://devtint.github.io/CVE-2026-0073/

2

PoC: CVE-2026-0073

CVE-2026-0073

1

PoC: CVE-2026-0073-Android-ADBD-bypass-POC

CVE-2026-0073 — Android ADB daemon (adbd) TLS authentication bypass via EVP_PKEY_cmp type confusion. Gain unauthorized shell access over WiFi using EC/Ed25519 key mismatch. PoC exploit for Android 14+.

1

PoC: poc-CVE-2026-0073

CVE-2026-0073 - ADB Wireless Mutual Authentication Bypass PoC

1

[POC] MAL-2026-2307 — CVE-2026-0073-Android-ADBD-bypass-POC_zh_CN

CVE-2026-0073-Android-ADBD-bypass-POC汉化版

PoC: POC-CVE-2026-0073

Security research PoC for CVE-2026-0073: ADB authentication bypass verification

PoC: CVE-2026-0073-Android-adbd-authentication-bypass

Research on CVE-2026-0073. An auth bypass allowing any attacker with local network access to connect to an Android device with dev tools and wireless debugging or ADB-over-TCP enabled. Device needs to have been paired before. This has been tested working on Android 14 in Android Studio. Should work on others as well but exploitability may vary.

PoC: CVE-2026-0073

0-Click RCE Android Adb TLS Wireless Debugging

PoC: CVE-2026-0073-Android-client-TLS-auth-bypass

translating original python exploit to C

PoC: CVE-2026-0073-ZERO-CLICK

ZERO-CLICK VUL - CVE-2026-0073 Android ADB Wireless Auth Bypass Exploit Framework. Multi-target zero-click RCE as shell user via TLS cert logic flaw in adbd. Targets Android 11+ devices pre-May 2026 patch with wireless debugging enabled. Features batch IP scanning, diagnostic commands, EC/Ed25519 key support, verbose debug mode & interactive wizard

PoC: CVE-2026-0073-ADBD-Bypass

Android ADB Authentication Bypass - Wireless ADB RCE Scanner

PoC: CVE-2026-0073-PoC-Exploit

🚀 CVE-2026-0073 - Android ADB Wireless Debugging Exploit (CVSS 8.8) 🔓 Zero-click authentication bypass via TLS type confusion. Gain interactive shell, execute commands, scan networks. Educational red-team tool. 🐚⚡

PoC: poc-CVE-2026-0073

CVE-2026-0073 - ADB Wireless Mutual Authentication Bypass PoC

PoC: adbHijacker

A PoC tool for the CVE-2026-0073 on android 11+ devices which allows instant zero click RCE on any unpatched device with adb over tcp enabled

PoC: CVE-2026-0073-Research

CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.

CVSS Vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free