CVE-2026-49196
HIGH WAF: High
CVSS 7.2
Published: 2026-05-29
CWE-77
The Wi-Fi device blocking feature fails to sanitize MAC address input, allowing injection and execution of arbitrary shell commands.
WAF Coverage Analysis
Command Injection
High WAF Coverage
OWASP: A03:2021 Injection
932xxx - Remote Code Execution
Affected Software
| Vendor | Product | Version |
|---|---|---|
| acer | predator_connect_w6x_firmware | up to w6x_gbl_2.00.000005 |
References
- community.acer.com (Vendor Advisory)