Vulnerabilities in Asus
168 resultsVexday analysis
A Asus apresenta 4 vulnerabilidades catalogadas, sendo 2 críticas, porém nenhuma sob ataque ativo no momento. A fraqueza dominante é CWE-119 (estouro de buffer), padrão em produtos embarcados, com risco estabilizado dado que nenhuma foi publicada nos últimos 90 dias.
CVE-2026-16006MEDIUMExposure of Sensitive System Information to an Unauthorized Control Sphere in Armoury Crate driver allows a local user to obtain kernel virtEPSS 0.1%CVE-2026-16004MEDIUMExposed IOCTL with Insufficient Access Control in Armoury Crate driver allows a local user to read and write arbitrary PCI/PCIe configuratioEPSS 0.1%CVE-2026-16005MEDIUMRelease of Invalid Pointer or Reference in Armoury Crate driver allows a local user to free arbitrary memory via a crafted IOCTL request by EPSS 0.1%CVE-2026-16003LOWExposed IOCTL with Insufficient Access Control in Armoury Crate driver allows a local user to add an arbitrary process identifier to the driEPSS 0.1%CVE-2026-8070HIGHIncorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypass the driver’s validation mechanism, reEPSS 0.1%CVE-2026-18023MEDIUMSensitive Information in Resource Not Removed Before Reuse in ASUS Armoury Crate driver allows a local user to disclose sensitive informatioEPSS 0.1%CVE-2026-16727HIGHConcurrent Execution using Shared Resource with Improper Synchronization (“Race Condition”) in ASUS Armoury Crate allows a local user to exeEPSS 0.1%CVE-2026-3428MEDIUMA Download of Code Without Integrity Check vulnerability in the update modules in ASUS Member Center(华硕大厅) allows a local user to achieve prEPSS 0.1%