Incoming VPN network profile settings fail to process special characters safely, enabling command injection via malicious config files.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://community.acer.com/en/kb/articles/19707 |
|
History
Thu, 04 Jun 2026 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incoming VPN network profile settings fail to process special characters safely, enabling command injection via malicious config files. | |
| Title | VPN Command Injection Vulnerability | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Acer
Published:
Updated: 2026-06-04T06:46:48.114Z
Reserved: 2026-06-04T01:29:10.111Z
Link: CVE-2026-50206
No data.
Status : Received
Published: 2026-06-04T07:16:28.177
Modified: 2026-06-04T07:16:28.177
Link: CVE-2026-50206
No data.
OpenCVE Enrichment
No data.
Weaknesses