WebSocket Service Exposure in Acer NitroSense and PredatorSense
CVE-2026-50607

2.7LOW

Key Information:

Vendor

Acer

Vendor
CVE Published:
17 September 2026

What is CVE-2026-50607?

A vulnerability exists within the WebSocket service of the Acer System Monitoring component found in NitroSense and PredatorSense. This service is configured to accept connections from all network interfaces, potentially allowing unauthorized network access. This exposure can lead to security risks where unauthorized entities could access sensitive data or control features of the Acer systems. It is crucial for users of these applications to be aware of this configuration flaw and take necessary actions to secure their systems.

Affected Version(s)

System Monitoring Windows * <= 1.0.19.2

References

CVSS V4

Score:
2.7
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Tolga Cohce
.