CVE-2026-9490

MEDIUM

Acer Care Center creates a Named Pipe with a weak Security Descriptor

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2026-9490. PoCs published by ugvxb.

AI-analyzed exploit summary The repository contains a functional Python exploit for CVE-2026-9490, demonstrating a Denial of Service (DoS) attack against the Acer Care Center service (ACCSvc.exe) via a weakly secured Named Pipe. The exploit sends a crafted payload to crash the service, and the README provides detailed technical analysis of the vulnerability, including affected components, security descriptors, and binary analysis.

Description

A security vulnerability has been identified in Acer Care Center where the ACCSvc service creates a Named Pipe with a weak Security Descriptor. This vulnerability allows an authenticated local user to connect and send a specially crafted message (message type 0x03) to the pipe, causing the service to crash with exit code 1067 (ERROR_PROCESS_ABORTED). To mitigate this potential local service disruption, Acer requires users to update the software to the latest version.

Exploits (1)

github WORKING POC 1 stars
by ugvxb · pythonpoc
https://github.com/ugvxb/CVE-2026-9490

The repository contains a functional Python exploit for CVE-2026-9490, demonstrating a Denial of Service (DoS) attack against the Acer Care Center service (ACCSvc.exe) via a weakly secured Named Pipe. The exploit sends a crafted payload to crash the service, and the README provides detailed technical analysis of the vulnerability, including affected components, security descriptors, and binary analysis.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Acer Care Center (ACCSvc.exe)
Auth required
Prerequisites: Authenticated local user access · Acer Care Center service running
devstral-2 · analyzed May 30, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 2.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-269
Status published
Products (2)
Acer/Care Center 4.0 - 4.00.3058
acer/care_center < 4.00.3060
Published May 25, 2026
Tracked Since May 25, 2026