Back

HIGH

PredatorSense V3: Local Privilege Escalation (LPE) vulnerability

Published May 8, 2026

Description

PredatorSense version 3.00.3136 to 3.00.3196 contain Local Privilege Escalation (LPE) vulnerability.The program exposes a Windows Named Pipe that uses a custom protocol to invoke internal functions. However, this Named Pipe is misconfigured, allowing any authenticated local user to execute arbitrary code with NT AUTHORITY\SYSTEM privileges and to delete arbitrary files with SYSTEM privileges. By leveraging this, an attacker can execute arbitrary code on the target system with elevated privileges.

Affected products

Remediation

Vendor solution

Update to version 3.00.3198.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Acer
Published May 8, 2026
Updated May 8, 2026
Reserved May 7, 2026
CISA Vulnrichment
Updated May 8, 2026
NVD
Status Analyzed
Modified Aug 12, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner Acer
Published May 8, 2026
Updated May 8, 2026
Exploited since n/a
EUVD-2026-28533