Technology · Acer
Acer Connect M6E 5G Portable WiFi Router vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 26 vulnerabilities in Acer Connect M6E 5G Portable WiFi Router: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-50226, was published on 4 June 2026.
- Last 7 days
- 0
- Last 90 days
- 0
- Critical, all time
- 0
- Exploited in the wild
- 0
About Acer Connect M6E 5G Portable WiFi Router
Firmware for the Acer Connect M6E 5G portable wireless router.
Latest Acer Connect M6E 5G Portable WiFi Router vulnerabilities
- CVE-2026-50226: Acer Connect M6E hard-coded AES keys in OTA applicationinfoCVSS 6.9
- CVE-2026-50225: Acer Connect M6E missing bot mitigation in registration endpointinfoCVSS 8.8
- CVE-2026-50224: Acer Connect M6E 5G Router Information Exposure in Web Admin PanelinfoCVSS 6.9
- CVE-2026-50214: Acer Connect M6E shared global API token in /v1/Plan serviceinfoCVSS 9.3
- CVE-2026-50213: Acer Connect M6E IDOR in account validation endpointinfoCVSS 8.7
- CVE-2026-50212: Acer Connect M6E 5G Router denial of service in dissociation APIinfoCVSS 7.1
- CVE-2026-50211: Acer Connect M6E exposed engineering diagnostics in firmwareinfoCVSS 8.8
- CVE-2026-50210: Acer Connect M6E 5G Router weak encryption via static IVsinfoCVSS 6.9
- CVE-2026-50209: Acer Connect M6E MDM hijacking via Broadcast Receiver privilege escalationinfoCVSS 9.3
- CVE-2026-50208: Acer Connect M6E TLS validation bypass and hard-coded keysinfoCVSS 9.2
- CVE-2026-50207: Acer Connect M6E unverified AT commands in Binder boundaryinfoCVSS 8.5
- CVE-2026-50206: Acer Connect M6E command injection in VPN profile settingsinfoCVSS 8.5
- CVE-2026-50205: Acer Connect M6E sensitive information disclosure in system logsinfoCVSS 8.8
- CVE-2026-49204: Acer Connect M6E 5G hard-coded AWS credentials in debug modulesinfoCVSS 6.9
- CVE-2026-49203: Acer Connect M6E improper authentication in eSIM management APIinfoCVSS 7.2
- CVE-2026-49202: Acer Connect M6E improper authentication in multimedia session archivesinfoCVSS 8.8
- CVE-2026-49194: Acer Connect M6E authentication bypass via SCREEN_CLICK debugging routineinfoCVSS 9.4
- CVE-2026-49193: Acer Connect M6E information disclosure in AWS S3 telemetry bucketsinfoCVSS 8.7
- CVE-2026-49192: Acer Connect M6E IDOR in summary service endpointinfoCVSS 5.3
- CVE-2026-49191: Acer Connect M6E hard-coded API keys in M3WebServerinfoCVSS 9.3
- CVE-2026-49190: Acer Connect M6E missing authorization for internal opcodesinfoCVSS 9.4
- CVE-2026-49189: Acer Connect M6E Broadcast Receiver privilege escalationinfoCVSS 8.5
- CVE-2026-49188: Acer Connect M6E command injection in ai_cmd utilityinfoCVSS 8.7
- CVE-2026-49187: Acer Connect M6E hard-coded credentials in APK resourcesinfoCVSS 8.7
- CVE-2026-49186: Acer Connect M6E missing MQTT topic access controlinfoCVSS 8.6
Most severe Acer Connect M6E 5G Portable WiFi Router vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-49185: Acer Connect M6E Command Injection in FieldX MDMinfoCVSS 10
- CVE-2026-49194: Acer Connect M6E authentication bypass via SCREEN_CLICK debugging routineinfoCVSS 9.4
- CVE-2026-49190: Acer Connect M6E missing authorization for internal opcodesinfoCVSS 9.4
- CVE-2026-50214: Acer Connect M6E shared global API token in /v1/Plan serviceinfoCVSS 9.3
- CVE-2026-50209: Acer Connect M6E MDM hijacking via Broadcast Receiver privilege escalationinfoCVSS 9.3
- CVE-2026-49191: Acer Connect M6E hard-coded API keys in M3WebServerinfoCVSS 9.3
- CVE-2026-50208: Acer Connect M6E TLS validation bypass and hard-coded keysinfoCVSS 9.2
- CVE-2026-50225: Acer Connect M6E missing bot mitigation in registration endpointinfoCVSS 8.8
- CVE-2026-50211: Acer Connect M6E exposed engineering diagnostics in firmwareinfoCVSS 8.8
- CVE-2026-50205: Acer Connect M6E sensitive information disclosure in system logsinfoCVSS 8.8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 | |
| 28 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/connect-m6e-5g-portable-wifi-router.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Acer Connect M6E 5G Portable WiFi Router vulnerabilities", https://junglewise.ai/threats/technologies/connect-m6e-5g-portable-wifi-router, 28 September 2026.