PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigured, allowing any authenticated local user to execute arbitrary code with NT AUTHORITY\SYSTEM privileges and to delete arbitrary files with SYSTEM privileges. By leveraging this, an attacker can execute arbitrary code on the target system with elevated privileges.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Update to version 3.00.3198.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://community.acer.com/en/kb/articles/19652 |
|
History
Fri, 08 May 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigured, allowing any authenticated local user to execute arbitrary code with NT AUTHORITY\SYSTEM privileges and to delete arbitrary files with SYSTEM privileges. By leveraging this, an attacker can execute arbitrary code on the target system with elevated privileges. | |
| Title | PredatorSense V3: Local Privilege Escalation (LPE) vulnerability | |
| Weaknesses | CWE-22 CWE-269 CWE-284 CWE-732 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Acer
Published:
Updated: 2026-05-08T05:57:22.797Z
Reserved: 2026-05-07T06:26:33.337Z
Link: CVE-2026-8069
No data.
Status : Received
Published: 2026-05-08T07:16:29.443
Modified: 2026-05-08T07:16:29.443
Link: CVE-2026-8069
No data.
OpenCVE Enrichment
Updated: 2026-05-08T07:30:03Z