CVE-2026-50605: Privilege Escalation Vulnerability in NitroSense and PredatorSense Software
Published Sep 17, 2026
·Updated
A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. Insufficient access controls within a privileged service may allow an authenticated local user to perform unauthorized registry operations. In certain situations, this could lead to privilege escalation or compromise of the affected system.
Affected Software
1 affected component
Acer Acer Agent Service
Event History
Sep 17, 2026
CVE Published
via MITRE·07:53 AM
Data Sourced
via MITRE·07:53 AM
RemedyDescriptionWeakness
Frequently Asked Questions
1
Which installations should be prioritized for review?
Systems with the Acer Agent Service component included with NitroSense or PredatorSense should be reviewed, especially where local users can sign in.
2
What level of access does an attacker need?
Exploitation requires an authenticated local user. The issue involves unauthorized registry operations through a privileged service and may lead to privilege escalation in certain situations.