Unauthenticated eSIM Configuration Manipulation
CVE-2026-49203
7.2HIGH
What is CVE-2026-49203?
Crucial management API endpoints for cellular eSIM allocation do not validate caller authorization, allowing remote profiles to be rewritten or deleted.
Affected Version(s)
Connect M6E 5G Portable WiFi Router *
