Summary Service Insecure Direct Object Reference
CVE-2026-49192
5.3MEDIUM
What is CVE-2026-49192?
The summary service endpoint suffers from an IDOR vulnerability where it fails to verify user ownership of hardware serial numbers, exposing device data to scraping.
Affected Version(s)
Connect M6E 5G Portable WiFi Router *
