A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense. The WebSocket handshake process does not properly require authentication before allowing connections to the service. Under certain circumstances, unauthorized access to service functionality may be possible.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update to one of the following versions or later: * NitroSense v5.2.84 * PredatorSense v5.2.109
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://community.acer.com/en/kb/articles/19875 |
|
History
Thu, 17 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense. The WebSocket handshake process does not properly require authentication before allowing connections to the service. Under certain circumstances, unauthorized access to service functionality may be possible. | |
| Title | Authentication Vulnerability in NitroSense and PredatorSense Software | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Acer
Published:
Updated: 2026-09-17T08:15:17.327Z
Reserved: 2026-06-05T07:22:32.054Z
Link: CVE-2026-50608
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses