Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2748▲ 38 respecto a la semana anterior
Críticas / altas1479▲ 369 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 462 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.4) | 0.13% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense due to insufficient access controls in a privileged service. An authenticated local user may be able to access the service and perform unauthorized registry modifications, potentially resulting in… | |
| Aplazada | Baja (1.2) | 0.21% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense. The WebSocket handshake process does not properly require authentication before allowing connections to the service. Under certain circumstances, unauthorized access to service functionality may be… | |
| Aplazada | Baja (2.7) | 0.43% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense. A WebSocket service was configured to listen on all network interfaces, which may expose the service to unintended network access. | |
| Aplazada | Baja (1.2) | 0.10% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer System Monitoring component included with NitroSense and PredatorSense. The vulnerability is caused by the use of a hard-coded AES encryption key within the software. Under certain circumstances, a local attacker may be able to use the embedded key to access protected… | |
| Aplazada | Alta (7.4) | 0.13% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. Insufficient access controls within a privileged service may allow an authenticated local user to perform unauthorized registry operations. In certain situations, this could lead to privilege escalation… | |
| Aplazada | Media (4.9) | 0.21% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. The socket handshake process does not properly require authentication before granting access to the service. Under certain circumstances, an unauthorized connection may be established, potentially… | |
| Aplazada | Media (4.9) | 0.10% | — | Acer NitrosenseAIAcer PredatorsenseAI | 17/9/2026 | 18/9/2026 | A vulnerability has been identified in the Acer Agent Service component included with NitroSense and PredatorSense. The vulnerability is caused by the use of a hard-coded AES encryption key within the software. Under certain circumstances, a local attacker may be able to use the embedded key to access protected… | |
| Analizada | Alta (8.5) | 0.17% | — | Acer NitrosenseAcer Predatorsense | 8/5/2026 | 12/8/2026 | PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigured, allowing any authenticated local user to execute arbitrary code with NT… |