ZeroHour

CVE-2026-50206

CVSS 4.0
8.5 high
EPSS
<1%p52
Published
()
Modified
Description

Incoming VPN network profile settings fail to process special characters safely, enabling command injection via malicious config files.

Vendors
acer
Products
connect m6e 5g firmware
Weakness
CWE-78
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

In the news

No ingested article mentions this CVE yet.