CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. See the original NVD description below for full technical details.
CVE
CVE-2026-50226
Severity
MEDIUM
CVSS
5.3
EPSS
0.19%
Original NVD Description
Fixed AES-128-CBC keys inside the AcerConnect OTA application let attackers forge authorization credentials for arbitrary IMEI numbers. This allows unauthorized actors to list catalog items and extract protected binaries from pre-signed cloud links.
Related CVEs
Other vulnerabilities affecting the same vendor(s)