IDOR Vulnerability in Acer Summary Service Exposes Device Data
CVE-2026-49192
5.3MEDIUM
What is CVE-2026-49192?
The Acer Summary Service is susceptible to an IDOR vulnerability that arises from inadequate verification of user ownership for hardware serial numbers. This flaw allows unauthorized access to device data, potentially leading to data scraping and misuse. Users may unknowingly expose sensitive information due to this security oversight, necessitating immediate attention and remediation.
Affected Version(s)
Connect M6E 5G Portable WiFi Router *
