Vulnerabilidad · Publicado 04/06/2026 · Actualizado 01/08/2026
Crucial management API endpoints for cellular eSIM allocation do not validate caller authorization, allowing remote profiles to be rewritten or deleted.
Crucial management API endpoints for cellular eSIM allocation do not validate caller authorization, allowing remote profiles to be rewritten or deleted.
Score: 8.3/10 — Severidad: HIGH — Estado NIST: Analyzed
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Connect m6e 5g firmware, Connect m6e 5g — Acer
CWE-287
Publicado en NIST NVD.