CVE-2026-8988
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
21/07/2026
Last modified:
13/08/2026
Description
Autel Maxi Charger Single firmware through V1.03.51 exposes an accessible UART interface that permits interruption of the boot process and access to the U-Boot bootloader. An attacker with physical access can modify the boot configuration or file system to obtain operating system access.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
6.80
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:autel:maxicharger_single_charger_firmware:*:*:*:*:*:*:*:american_standard | 1.03.51 (including) | |
| cpe:2.3:o:autel:maxicharger_single_charger_firmware:*:*:*:*:*:*:*:european_standard | 1.03.51 (including) | |
| cpe:2.3:h:autel:maxicharger_single_charger:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



