Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 14 May 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | UART Bootloader Accessible in Debug Mode During Battery Disconnection |
Thu, 14 May 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | UART Bootloader Access Enables Unauthorized Firmware Reflash | |
| Weaknesses | CWE-284 |
Thu, 14 May 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-276 | |
| Metrics |
cvssV3_1
|
Wed, 13 May 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | UART Bootloader Access Enables Unauthorized Firmware Reflash | |
| Weaknesses | CWE-284 |
Wed, 13 May 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hiseeu C90 v5.7.15 is vulnerable to Insecure Permissions. The UART bootloader is accessible when battery is disconnected (hidden/debug mode). | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-14T12:28:31.093Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36742
Updated: 2026-05-14T12:25:37.217Z
Status : Deferred
Published: 2026-05-13T16:16:40.977
Modified: 2026-05-14T13:16:17.527
Link: CVE-2026-36742
No data.
OpenCVE Enrichment
Updated: 2026-05-14T16:30:24Z