CVE-2026-8988

Summary

Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of the boot process and access to the U-Boot bootloader. An attacker with physical access can modify the boot configuration or file system to obtain operating system access.

Affected Software

VendorProductVersion RangeStatus
AutelMaxiCharger Single0 <= V1.03.51affected

Weaknesses

  • CWE-1191: CWE-1191 On-Chip debug and test interface with improper access control

References