CyberRota
Back to database

CVE-2026-9789

UNKNOWN · CVSS N/A EPSS 0.15% Public Exploit

Source: NVD + CISA KEV + EPSS · Published: 2026-05-28 · Last synced: 2026-06-25

CyberRota Analysis

Detaylı analiz gerekiyor.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-9789
Severity
UNKNOWN
CVSS
N/A
EPSS
0.15%

Original NVD Description

A Local Privilege Escalation (LPE) vulnerability affects Acer NitroSense software versions prior to 3.01.3052. The vulnerability stems from the the PSAdminAgent service, which creates a Named Pipe with a weak Access Control List (ACL). This allows any authenticated local user to connect and send commands. Because the service does not check the caller's privileges before running file deletion commands, a low-privileged local user can exploit this to delete arbitrary files with system authority.