CVE-2026-78862: n/a
Description
A vulnerability in Mercusys AC12 V2 allows a local attacker to execute arbitrary code via the UART serial interface on the device's printed circuit board. This issue enables code execution through physical access to the hardware interface.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-78862 describes a security flaw in the Mercusys AC12 V2 router where a local attacker with physical access to the UART serial interface on the printed circuit board can execute arbitrary code. This vulnerability arises from insufficient protection of the UART interface, which is typically used for debugging or device management. No CVSS score or detailed technical data is provided, and there is no information about patch availability or vendor advisories.
Potential Impact
The impact is that an attacker with physical access to the device can execute arbitrary code, potentially leading to full control over the device. This could compromise the device's integrity and confidentiality. However, exploitation requires local physical access to the UART interface, limiting the attack vector.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict physical access to the device and its internal components to trusted personnel only.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- mitre
- Date Reserved
- 2026-08-25T00:00:00.000Z
- State
- PUBLISHED
Threat ID: 6ac4063a2cdf04f65634e095
Added to database: 10/05/2026, 20:19:06 UTC
Last enriched: 10/05/2026, 20:33:19 UTC
Last updated: 10/05/2026, 20:34:04 UTC
Views: 3
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.