CVE-2026-49194: SCREEN_CLICK Authentication Bypass
Published Jun 4, 2026
·Updated
The debugging routine SCREENCLICK(5053) enables a connection to skip the standard device login prompt entirely and directly enter an interactive shell interface.
Affected Software
2 affected components
All of the following
Acer Connect M6e 5g Firmware<=m6e_ai_1.00.000019
Acer Connect M6e 5g
Event History
Jun 4, 2026
CVE Published
via MITRE·06:21 AM
Data Sourced
via MITRE·06:21 AM
DescriptionWeakness
Data Sourced
via NVD·07:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-49194?
The severity of CVE-2026-49194 is critical with a score of 9.4 according to the CVSS.
2
How does CVE-2026-49194 impact security?
CVE-2026-49194 allows an authentication bypass, enabling unauthorized access to the interactive shell interface.
3
What software is affected by CVE-2026-49194?
CVE-2026-49194 affects the Acer Connect M6e 5g Firmware.
4
How can I mitigate CVE-2026-49194?
To mitigate CVE-2026-49194, disable the SCREEN_CLICK debugging routine if possible and implement additional security measures.
5
When was CVE-2026-49194 published?
CVE-2026-49194 was published on June 4, 2026.