A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. The vulnerability is caused by the use of a hard-coded AES encryption key within the software. Under certain circumstances, a local attacker may be able to use the embedded key to access protected information or perform unauthorized actions.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update to one of the following versions or later: * NitroSense v5.2.84 * PredatorSense v5.2.109
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://community.acer.com/en/kb/articles/19878 |
|
History
Thu, 17 Sep 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. The vulnerability is caused by the use of a hard-coded AES encryption key within the software. Under certain circumstances, a local attacker may be able to use the embedded key to access protected information or perform unauthorized actions. | |
| Title | Hard-coded encryption key vulnerability in Acer Agent Service for NitroSense and PredatorSense | |
| Weaknesses | CWE-321 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Acer
Published:
Updated: 2026-09-17T04:01:12.295Z
Reserved: 2026-06-05T07:22:32.054Z
Link: CVE-2026-50603
No data.
Status : Received
Published: 2026-09-17T04:17:46.930
Modified: 2026-09-17T04:17:46.930
Link: CVE-2026-50603
No data.
OpenCVE Enrichment
No data.
Weaknesses