Local Access Vulnerability in Acer Agent Service of NitroSense and PredatorSense
CVE-2026-50603

4.9MEDIUM

Key Information:

Vendor

Acer

Vendor
CVE Published:
17 September 2026

What is CVE-2026-50603?

A vulnerability has been found in the Acer Agent Service component used in NitroSense and PredatorSense applications. This issue arises from the use of a hard-coded AES encryption key within the software, which may allow a local attacker under certain conditions to exploit this key, potentially leading to unauthorized access to sensitive information or enabling unauthorized actions. Users of affected products should take measures to mitigate risks associated with this vulnerability.

Affected Version(s)

Acer Agent Service Windows * <= 1.2.110.2

References

CVSS V4

Score:
4.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tolga Cohce
.