Unauthorized Access in Acer Agent Service of NitroSense and PredatorSense
CVE-2026-50604

4.9MEDIUM

Key Information:

Vendor

Acer

Vendor
CVE Published:
17 September 2026

What is CVE-2026-50604?

A serious security flaw has been found in the Acer Agent Service, affecting users of NitroSense and PredatorSense. The vulnerability arises from a socket handshake process that fails to enforce proper authentication, allowing unauthorized users to potentially connect to the service. This can lead to access to functionalities that are intended to be restricted, putting users' systems at risk. It is crucial for users of affected products to take necessary precautions to secure their devices.

Affected Version(s)

Acer Agent Service * <= 1.2.110.2

References

CVSS V4

Score:
4.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tolga Cohce
.