CVE-2026-8069
PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigured, allowing any authenticated local user to execute arbitrary code with NT AUTHORITY\SYSTEM privileges and to delete arbitrary files with SYSTEM privileges. By leveraging this, an attacker can execute arbitrary code on the target system with elevated privileges.
Published:May 8, 2026
Last Modified:Aug 12, 2026
EPS:May 8, 2026
EPSS Score:0.00118
CVSS Score:7.8
Affected Products
Vendor
Product
Action
Vendor
Acer
Product
Nitrosense
Acer
Nitrosense
Vendor
Acer
Product
Predatorsense
Acer
Predatorsense
Vendor
Acer
Product
Predatorsense V3
Acer
Predatorsense V3
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
