Autel Maxi Charger Single firmware through V1.03.51 contains a hard-coded authentication token that bypasses authorization checks for multiple management endpoints. An attacker can supply the special token value to invoke privileged functionality without valid authentication.
CVSS
No CVSS.
References
Configurations
No configuration.
History
21 Jul 2026, 21:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-21 21:16
Updated : 2026-07-22 20:17
NVD link : CVE-2026-8983
Mitre link : CVE-2026-8983
CVE.ORG link : CVE-2026-8983
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials
