Vulnerability Details CVE-2026-50224
The web administration panel binds broadly to the public IPv6 address space on port [::]:8080 without default firewall limits, making internal API endpoints reachable over the WAN.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.8%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2026-50224
-
cpe:2.3:h:acer:connect_m6e_5g:-
-
cpe:2.3:o:acer:connect_m6e_5g_firmware:m6e_ai_1.00.000019