Vulnerability Details CVE-2026-8989
Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through exposed hardware recovery pins. An attacker with physical access can boot attacker-controlled code in memory and modify or extract firmware and other sensitive data.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 8.6%
CVSS Severity
CVSS v3 Score 6.8
Products affected by CVE-2026-8989
-
cpe:2.3:h:autel:maxicharger_single_charger:-
-
cpe:2.3:o:autel:maxicharger_single_charger_firmware:-