已在随 NitroSense 和 PredatorSense 一起提供的 Acer 系统监控组件中发现一个漏洞。特权命名管道服务中不充分的访问控制可能允许已认证的本机用户执行未授权的注册表操作。在特定情况下,这可能导致权限提升或受影响系统被入侵。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Acer | System Monitoring | * ~ 1.0.19.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-50605 | 7.4 HIGH | Privilege Escalation Vulnerability in NitroSense and PredatorSense Software |
| CVE-2026-50610 | 7.4 HIGH | Improper Access control Vulnerability in NitroSense and PredatorSense Software |
| CVE-2026-50603 | 4.9 MEDIUM | Hard-coded encryption key vulnerability in Acer Agent Service for NitroSense and PredatorS |
| CVE-2026-50604 | 4.9 MEDIUM | Unauthenticated Access Vulnerability in NitroSense and PredatorSense Software |
| CVE-2026-50607 | 2.7 LOW | WebSocket Exposure Vulnerability in NitroSense and PredatorSense Software |
| CVE-2026-50606 | 1.2 LOW | Hard-coded Encryption Key Vulnerability in Acer System Monitoring for NitroSense and Preda |
| CVE-2026-50608 | 1.2 LOW | Authentication Vulnerability in NitroSense and PredatorSense Software |
No comments yet