CVE-2026-50206

MEDIUM WAF: High
CVSS 6.8 Published: 2026-06-04
CWE-78

Incoming VPN network profile settings fail to process special characters safely, enabling command injection via malicious config files.

WAF Coverage Analysis

OS Command Injection High WAF Coverage

OWASP: A03:2021 Injection

932xxx - Remote Code Execution

Affected Software

VendorProductVersion
acerconnect_m6e_5g_firmwareup to m6e_ai_1.00.000019

References

Back to CVE Database