← Back

Acer

acer

53 CVEs • 116 products

Products (116)

Click to collapse
Toggle
Care Center
care_center
Acer Portal
acer_portal
Quick Access
quick_access
Quickaccess
quickaccess
Chromebase
chromebase
Chromebase 24
chromebase_24
Chromebox
chromebox
Altos T110 F3
altos_t110_f3
Ap130 F2
ap130_f2
Aspire 1600x
aspire_1600x
Aspire 1602m
aspire_1602m
Aspire 7600u
aspire_7600u
Aspire Mc605
aspire_mc605
Aspire Tc 105
aspire_tc-105
Aspire Tc 120
aspire_tc-120
Aspire U5 620
aspire_u5-620
Aspire X1935
aspire_x1935
Aspire X3475
aspire_x3475
Aspire X3995
aspire_x3995
Aspire Xc100
aspire_xc100
Aspire Xc600
aspire_xc600
Aspire Z3 615
aspire_z3-615
Veriton E430g
veriton_e430g
Veriton E430
veriton_e430
Veriton M2611
veriton_m2611
Veriton M4620
veriton_m4620

CVEs (53)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
9.4 CRITICAL· v4
8.8 HIGH· v3
N/A· v2
The system fails to evaluate instructional permissions over multiple internal operation codes (opcodes), permitting unauthorized application installations or command executions.
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
8.5 HIGH· v4
7.8 HIGH· v3
N/A· v2
Unchecked public access permissions on a core Broadcast Receiver allow unauthorized local software components to invoke administrative operations.
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
8.7 HIGH· v4
9.8 CRITICAL· v3
N/A· v2
The ai_cmd utility executes with full root permissions. It pipes socket inputs directly to popen(), paving the way for unauthenticated users to execute arbitrary root commands.
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
8.7 HIGH· v4
7.5 HIGH· v3
N/A· v2
The hard-coded APK resource files never expire, and the shared scepter leads to information leaks and potential misuse.
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
8.6 HIGH· v4
9.8 CRITICAL· v3
N/A· v2
The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). This allows any client to subscribe using wildcard characters (# or +) to enumerate hidden network devices or publish rogue control commands...Show more
The local MQTT broker does not enforce topic-level Access Control Lists (ACLs). This allows any client to subscribe using wildcard characters (# or +) to enumerate hidden network devices or publish rogue control commands.Show less
1Acer
1Connect M6e 5g Firmware
Jul 22, 2026
Jun 4, 2026
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
The FieldX MDM adb messaging topic passes unverified payloads directly into Runtime.exec(), allowing command/instruction injection.
1Acer
1Wave 7 Firmware
Jul 21, 2026
May 29, 2026
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
The upload.cgi binary, responsible for processing device backups, contains a hardcoded AES encryption key. This allows an attacker to decrypt, modify, and re-encrypt system backups, facilitating persistent backdoor injec...Show more
The upload.cgi binary, responsible for processing device backups, contains a hardcoded AES encryption key. This allows an attacker to decrypt, modify, and re-encrypt system backups, facilitating persistent backdoor injection.Show less
1Acer
1Wave 7 Firmware
Jul 21, 2026
May 29, 2026
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
The acer_cgi.log file in the device firmware is accessible without authentication via the web interface. This file contains cleartext login credentials (for web and Telnet), leading to unauthorized system access.
1Acer
1Predator Connect W6x Firmware
Jul 21, 2026
May 29, 2026
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Crafted MQTT messages can trigger command injection, resulting in root-level code execution on the target device.
1Acer
1Predator Connect W6x Firmware
Jul 21, 2026
May 29, 2026
8.3 HIGH· v4
4.9 MEDIUM· v3
N/A· v2
Improper access control in the MQTT broker allows wildcard topic subscriptions, exposing all MQTT traffic to unauthorized actors.
1Acer
1Predator Connect W6x Firmware
Jul 21, 2026
May 29, 2026
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Web endpoints intended for the Acer Connect app improperly validate the HTTP Authorization header, failing to block requests when Base64 decoding fails.
1Acer
1Predator Connect W6x Firmware
Jul 21, 2026
May 29, 2026
8.6 HIGH· v4
7.2 HIGH· v3
N/A· v2
The Wi-Fi device blocking feature fails to sanitize MAC address input, allowing injection and execution of arbitrary shell commands.
1Acer
1Predator Connect W6x Firmware
Jul 21, 2026
May 29, 2026
8.7 HIGH· v4
8.8 HIGH· v3
N/A· v2
Unauthenticated Debug Service. The /sbin/mtk_dut binary is exposed on TCP port 9000 without authentication, allowing any LAN-based attacker to execute arbitrary UCC commands.
1Acer
1Care Center
Jul 23, 2026
May 25, 2026
6.8 MEDIUM· v4
5.5 MEDIUM· v3
N/A· v2
A security vulnerability has been identified in Acer Care Center where the ACCSvc service creates a Named Pipe with a weak Security Descriptor. This vulnerability allows an authenticated local user to connect and send a...Show more
A security vulnerability has been identified in Acer Care Center where the ACCSvc service creates a Named Pipe with a weak Security Descriptor. This vulnerability allows an authenticated local user to connect and send a specially crafted message (message type 0x03) to the pipe, causing the service to crash with exit code 1067 (ERROR_PROCESS_ABORTED). To mitigate this potential local service disruption, Acer requires users to update the software to the latest version.Show less
1Acer
1Sk 9662 Firmware
Jun 17, 2026
Nov 27, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
An issue discovered in Acer Wireless Keyboard SK-9662 allows attacker in physical proximity to both decrypt wireless keystrokes and inject arbitrary keystrokes via use of weak encryption.
1Acer
1Aspire E5 475g Firmware
Jun 17, 2026
Feb 16, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privil...Show more
Stack overflow vulnerability in Aspire E5-475G 's BIOS firmware, in the FpGui module, a second call to GetVariable services allows local attackers to execute arbitrary code in the UEFI DXE phase and gain escalated privileges.Show less
1Acer
5Aspire A115 21 Firmware
Aspire A315 22 FirmwareAspire A315 22g Firmware+2 more
Jun 17, 2026
Nov 28, 2022
N/A· v4
8.2 HIGH· v3
N/A· v2
Vulnerability in the HQSwSmiDxe DXE driver on some consumer Acer Notebook devices may allow an attacker with elevated privileges to modify UEFI Secure Boot settings by modifying an NVRAM variable.
1Acer
1Altos W2000h W570h F4 Firmware
Jul 9, 2026
Oct 19, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component. This vulnerability allows attackers to cause a Denial of Service (DoS) via injecting crafted shellcode into...Show more
Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component. This vulnerability allows attackers to cause a Denial of Service (DoS) via injecting crafted shellcode into the NVRAM variable.Show less
1Acer
34Altos T110 F3 Firmware
Ap130 F2 FirmwareAspire 1600x Firmware+31 more
Jul 9, 2026
Sep 23, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
There is a stack buffer overflow vulnerability, which could lead to arbitrary code execution in UEFI DXE driver on some Acer products. An attack could exploit this vulnerability to escalate privilege from ring 3 to ring...Show more
There is a stack buffer overflow vulnerability, which could lead to arbitrary code execution in UEFI DXE driver on some Acer products. An attack could exploit this vulnerability to escalate privilege from ring 3 to ring 0, and hijack control flow during UEFI DXE execution. This affects Altos T110 F3 firmware version <= P13 (latest) and AP130 F2 firmware version <= P04 (latest) and Aspire 1600X firmware version <= P11.A3L (latest) and Aspire 1602M firmware version <= P11.A3L (latest) and Aspire 7600U firmware version <= P11.A4 (latest) and Aspire MC605 firmware version <= P11.A4L (latest) and Aspire TC-105 firmware version <= P12.B0L (latest) and Aspire TC-120 firmware version <= P11-A4 (latest) and Aspire U5-620 firmware version <= P11.A1 (latest) and Aspire X1935 firmware version <= P11.A3L (latest) and Aspire X3475 firmware version <= P11.A3L (latest) and Aspire X3995 firmware version <= P11.A3L (latest) and Aspire XC100 firmware version <= P11.B3 (latest) and Aspire XC600 firmware version <= P11.A4 (latest) and Aspire Z3-615 firmware version <= P11.A2L (latest) and Veriton E430G firmware version <= P21.A1 (latest) and Veriton B630_49 firmware version <= AAP02SR (latest) and Veriton E430 firmware version <= P11.A4 (latest) and Veriton M2110G firmware version <= P21.A3 (latest) and Veriton M2120G fir.Show less
1Acer
1Quickaccess
Jun 17, 2026
Mar 10, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Acer QuickAccess 2.01.300x before 2.01.3030 and 3.00.30xx before 3.00.3038 contains a local privilege escalation vulnerability. The user process communicates with a service of system authority through a named pipe. In th...Show more
Acer QuickAccess 2.01.300x before 2.01.3030 and 3.00.30xx before 3.00.3038 contains a local privilege escalation vulnerability. The user process communicates with a service of system authority through a named pipe. In this case, the Named Pipe is also given Read and Write rights to the general user. In addition, the service program does not verify the user when communicating. A thread may exist with a specific command. When the path of the program to be executed is sent, there is a local privilege escalation in which the service program executes the path with system privileges.Show less