CVE-2026-9490
Acer Care Center creates a Named Pipe with a weak Security Descriptor
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
2th
A security vulnerability has been identified in Acer Care Center where the ACCSvc service creates a Named Pipe with a weak Security Descriptor. This vulnerability allows an authenticated local user to connect and send a specially crafted message (message type 0x03) to the pipe, causing the service to crash with exit code 1067 (ERROR_PROCESS_ABORTED). To mitigate this potential local service disruption, Acer requires users to update the software to the latest version.
| CWE | CWE-269 |
| Vendor | acer |
| Product | care center |
| Published | May 25, 2026 |
| Last Updated | May 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for acer care center
Be the first to know when new unknown vulnerabilities affecting acer care center are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Acer / Care Center
4.0 โค 4.00.3058
References
Credits
Vo Duc Thang