← back
CVE-2022-26669

ASUS Control Center - SQL Injection

CVSS 8.8 HIGHEPSS 1.0%CWE-89
ASUS Control Center is vulnerable to SQL injection. An authenticated remote attacker with general user privilege can inject SQL command to specific API parameters to acquire database schema or access data.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
ASUS · Control Center

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →