Записи Acer
56 опубликованных записей вендора acer.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 7
- С записью об исправлении
- 1,8 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication8
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-787 Out-of-bounds Write3
- CWE-798 Use of Hard-coded Credentials3
- CWE-532 Insertion of Sensitive Information into Log File2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
56 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2006-6121Proof of concept | Acer Notebook LunchApp.APlunch ActiveX control allows remote attackers to execute arbitrary commands by calling the Run method.acer · lunchapp.aplunch | Критическая9,3 | — | 12,2 % | 26 нояб. 2006 г. |
41В плане | CVE-2012-2864Эксплойта нет | Mesa, as used in Google Chrome before 21.0.1183.0 on the Acer AC700, Cr-48, and Samsung Series 5 and 5 550 Chromebook platforms, and the Samgoogle · chrome os · CWE-119 | Критическая10,0 | — | 4,6 % | 22 авг. 2012 г. |
41В плане | CVE-2026-49199Эксплойта нет | Predator Connect W6x: RCE via MQTTacer · predator connect w6x firmware · CWE-77 | Критическая10,0 | — | 2,2 % | 29 мая 2026 г. |
40В плане | CVE-2011-3420Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.157 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformgoogle · chrome os | Критическая10,0 | — | 0,9 % | 12 сент. 2011 г. |
40В плане | CVE-2011-3421Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.125 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformgoogle · chrome os | Критическая10,0 | — | 0,9 % | 12 сент. 2011 г. |
40В плане | CVE-2011-4548Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.44 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformsgoogle · chrome os | Критическая10,0 | — | 0,9 % | 24 нояб. 2011 г. |
40В плане | CVE-2012-3290Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cgoogle · chrome os | Критическая10,0 | — | 0,7 % | 7 июн. 2012 г. |
40В плане | CVE-2012-0695Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.27 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformsgoogle · chrome os | Критическая10,0 | — | 0,7 % | 12 янв. 2012 г. |
40В плане | CVE-2012-1418Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.60 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformsgoogle · chrome os | Критическая10,0 | — | 0,7 % | 29 февр. 2012 г. |
40В плане | CVE-2011-4719Эксплойта нет | Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.63 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platformsgoogle · chrome os | Критическая10,0 | — | 0,7 % | 9 дек. 2011 г. |
40В плане | CVE-2026-49200Эксплойта нет | Acer Wave 7 router: Broken Access Controlacer · wave 7 firmware · CWE-532 | Критическая10,0 | — | 0,6 % | 29 мая 2026 г. |
40В плане | CVE-2026-49185Эксплойта нет | Instruction Injection via FieldX MDMacer · connect m6e 5g firmware · CWE-78 | Критическая10,0 | — | 0,6 % | 4 июн. 2026 г. |
40В плане | CVE-2026-49197Эксплойта нет | Predator Connect W6x: Improper Authenticationacer · predator connect w6x firmware · CWE-287 | Критическая10,0 | — | 0,5 % | 29 мая 2026 г. |
40В плане | CVE-2026-49201Эксплойта нет | Acer Wave 7 router: Hardcoded Cryptographic Keyacer · wave 7 firmware · CWE-798 | Критическая10,0 | — | 0,3 % | 29 мая 2026 г. |
39Наблюдать | CVE-2022-41415Эксплойта нет | Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component.acer · altos w2000h-w570h f4 firmware · CWE-787 | Критическая9,8 | — | 1,0 % | 19 окт. 2022 г. |
38Наблюдать | CVE-2009-2627Эксплойта нет | Insecure method vulnerability in the Acer LunchApp (aka AcerCtrls.APlunch) ActiveX control in acerctrl.ocx allows remote attackers to executacer · lunchapp.aplunch · CWE-94 | Критическая9,3 | — | 4,6 % | 19 авг. 2009 г. |
37Наблюдать | CVE-2026-49190Эксплойта нет | Missing Per-Instruction Authorization Checksacer · connect m6e 5g firmware · CWE-78 | Критическая9,4 | — | 0,8 % | 4 июн. 2026 г. |
37Наблюдать | CVE-2026-49191Эксплойта нет | Exposed Hard-coded M3WebServer Backend API Keyacer · connect m6e 5g firmware · CWE-287 | Критическая9,3 | — | 0,5 % | 4 июн. 2026 г. |
37Наблюдать | CVE-2026-49194Эксплойта нет | SCREEN_CLICK Authentication Bypassacer · connect m6e 5g firmware · CWE-287 | Критическая9,4 | — | 0,4 % | 4 июн. 2026 г. |
37Наблюдать | CVE-2026-50214Эксплойта нет | Shared Secret Quota Inflationacer · connect m6e 5g firmware · CWE-345 | Критическая9,3 | — | 0,3 % | 4 июн. 2026 г. |
37Наблюдать | CVE-2026-50209Эксплойта нет | MDM Server Registration Overridingacer · connect m6e 5g firmware · CWE-732 | Критическая9,3 | — | 0,1 % | 4 июн. 2026 г. |
36Наблюдать | CVE-2026-50208Эксплойта нет | Permissive TrustAllCerts TLS Verificationacer · connect m6e 5g firmware · CWE-330 | Критическая9,2 | — | 0,2 % | 4 июн. 2026 г. |
35Наблюдать | CVE-2026-50211Эксплойта нет | Exposed Factory Testing App Boundariesacer · connect m6e 5g firmware · CWE-134 | Высокая8,8 | — | 0,5 % | 4 июн. 2026 г. |
35Наблюдать | CVE-2026-49202Эксплойта нет | Unverified Meeting Recording Endpoints & Permissive CORSacer · connect m6e 5g firmware · CWE-287 | Высокая8,8 | — | 0,5 % | 4 июн. 2026 г. |
35Наблюдать | CVE-2026-50225Эксплойта нет | Account Creation Exhaustionacer · connect m6e 5g firmware · CWE-306 | Высокая8,8 | — | 0,4 % | 4 июн. 2026 г. |
- CVE-2006-612141В плане
Acer Notebook LunchApp.APlunch ActiveX control allows remote attackers to execute arbitrary commands by calling the Run method.
КритическаяCVSS 9,3Proof of conceptEPSS 12 %acer · lunchapp.aplunch26 нояб. 2006 г.
- CVE-2012-286441В плане
Mesa, as used in Google Chrome before 21.0.1183.0 on the Acer AC700, Cr-48, and Samsung Series 5 and 5 550 Chromebook platforms, and the Sam
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %google · chrome os22 авг. 2012 г.
- CVE-2026-4919941В плане
Predator Connect W6x: RCE via MQTT
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %acer · predator connect w6x firmware29 мая 2026 г.
- CVE-2011-342040В плане
Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.157 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platform
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os12 сент. 2011 г.
- CVE-2011-342140В плане
Multiple unspecified vulnerabilities in Google Chrome before 14.0.835.125 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platform
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os12 сент. 2011 г.
- CVE-2011-454840В плане
Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.44 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os24 нояб. 2011 г.
- CVE-2012-329040В плане
Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and C
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os7 июн. 2012 г.
- CVE-2012-069540В плане
Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.27 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os12 янв. 2012 г.
- CVE-2012-141840В плане
Multiple unspecified vulnerabilities in Google Chrome before 17.0.963.60 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os29 февр. 2012 г.
- CVE-2011-471940В плане
Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.63 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %google · chrome os9 дек. 2011 г.
- CVE-2026-4920040В плане
Acer Wave 7 router: Broken Access Control
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %acer · wave 7 firmware29 мая 2026 г.
- CVE-2026-4918540В плане
Instruction Injection via FieldX MDM
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-4919740В плане
Predator Connect W6x: Improper Authentication
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %acer · predator connect w6x firmware29 мая 2026 г.
- CVE-2026-4920140В плане
Acer Wave 7 router: Hardcoded Cryptographic Key
КритическаяCVSS 10,0Эксплойта нетEPSS 0 %acer · wave 7 firmware29 мая 2026 г.
- CVE-2022-4141539Наблюдать
Acer Altos W2000h-W570h F4 R01.03.0018 was discovered to contain a stack overflow in the RevserveMem component.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %acer · altos w2000h-w570h f4 firmware19 окт. 2022 г.
- CVE-2009-262738Наблюдать
Insecure method vulnerability in the Acer LunchApp (aka AcerCtrls.APlunch) ActiveX control in acerctrl.ocx allows remote attackers to execut
КритическаяCVSS 9,3Эксплойта нетEPSS 5 %acer · lunchapp.aplunch19 авг. 2009 г.
- CVE-2026-4919037Наблюдать
Missing Per-Instruction Authorization Checks
КритическаяCVSS 9,4Эксплойта нетEPSS 1 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-4919137Наблюдать
Exposed Hard-coded M3WebServer Backend API Key
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-4919437Наблюдать
SCREEN_CLICK Authentication Bypass
КритическаяCVSS 9,4Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-5021437Наблюдать
Shared Secret Quota Inflation
КритическаяCVSS 9,3Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-5020937Наблюдать
MDM Server Registration Overriding
КритическаяCVSS 9,3Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-5020836Наблюдать
Permissive TrustAllCerts TLS Verification
КритическаяCVSS 9,2Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-5021135Наблюдать
Exposed Factory Testing App Boundaries
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-4920235Наблюдать
Unverified Meeting Recording Endpoints & Permissive CORS
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.
- CVE-2026-5022535Наблюдать
Account Creation Exhaustion
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %acer · connect m6e 5g firmware4 июн. 2026 г.