CVE-2026-49186
Lack of MQTT Broker Topic Access Control Lists
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). This allows any client to subscribe using wildcard characters (#Β orΒ +) to enumerate hidden network devices or publish rogue control commands.
| CWE | CWE-287 |
| Vendor | acer |
| Product | connect m6e 5g portable wifi router |
| Published | Jun 4, 2026 |
| Last Updated | Jun 4, 2026 |
Stay Ahead of the Next One
Get instant alerts for acer connect m6e 5g portable wifi router
Be the first to know when new unknown vulnerabilities affecting acer connect m6e 5g portable wifi router are published β delivered to Slack, Telegram or Discord.
Get Free Alerts β
Free Β· No credit card Β· 60 sec setup
Affected Versions
Acer / Connect M6E 5G Portable WiFi Router
* β€ M6E_AI_1.00.000019
References
Credits
Ta-Lun Yen