CVE Database
/

CVE-2026-49200

Back to search

CVE-2026-49200

Published: May 29, 2026

Modified: May 29, 2026

PUBLISHED

Description

The acer_cgi.log file in the device firmware is accessible without authentication via the web interface. This file contains cleartext login credentials (for web and Telnet), leading to unauthorized system access.

VendorProductVersions

Acer

Wave 7 router

affected
T7c_GBL_1.01.000055 - <= *

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now