HIGHVulnerability

CVE-2026-8987

Autel Maxi Charger Single firmware through V1.03.51 contains a heap-based buffer overflow in the set_ap_param command handled by the /localcfg endpoint. An authenticated attacker can supply oversized input, resulting in denial of service and potentially arbitrary code execution.

Properties

severity
HIGH
score
8.8
cve_id
CVE-2026-8987
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
published_at
2026-07-21T22:19:11.143
last_modified
2026-08-13T12:54:37.733

Related Entities (5)

AFFECTS_PRODUCT (3)

[Product]
[Product]
[Product]

HAS_WEAKNESS (1)

[Weakness]Heap-based Buffer Overflow

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-8987 — Ninja Signal Threat Intelligence | Ninja Signal