Security Advisory

CVE-2026-49197

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-29 08:24:06
Last updated 2026-05-29 11:34:23
Assigner Acer
CVSS score 10.0
State PUBLISHED

Description

Web endpoints intended for the Acer Connect app improperly validate the HTTP Authorization header, failing to block requests when Base64 decoding fails.