


Perceptive Security
SOC/SIEM Consultancy

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 returns 128 bytes of uninitialized buffer when receiving POST requests without SOAPAction header on UPn…
Published:
2 juni 2026 om 22:00:00
Alert date:
3 juni 2026 om 21:02:42
Source:
nvd.nist.gov
Mobile & IoT, Network Infrastructure
Mercusys AC12G (EU) V1 router with firmware AC12G(EU)_V1_200909 contains a vulnerability that exposes 128 bytes of uninitialized buffer memory when processing POST requests without SOAPAction header on UPnP port 1900. This memory disclosure vulnerability can be exploited by unauthenticated attackers on adjacent networks, potentially revealing sensitive internal memory contents. The vulnerability affects the UPnP service implementation and requires no authentication to exploit.
Technical details
Mitigation steps:
Affected products:
Mercusys AC12G
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-36611
https://github.com/Tymbark7372/MERCUSYS-AC12G/blob/master/advisories/CVE-2026-36611.md
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
