Výsledky hledání

výrobce: ASUS× v celém archivu zrušit filtry

3 karet z 3 položek CZ · EN/orig

1

ZDI-26-657: ASUS Control Center Express Agent Missing Authentication Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of ASUS Control Center Express Agent. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2026-19397.

EPSS 0.00 CVSS 9.8 CVE-2026-19397 ASUS US

tg: zranitelnost

· Zero Day Initiative · ZDI-26-657: ASUS Control Center Express Agent Missing Authentication Remote Code Execution Vulnerability

1

1

ZDI-26-431: ASUS Business Manager Service Client-Side Authentication Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of ASUS Business Manager. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-8921.

EPSS 0.00 CVSS 7.8 CVE-2026-8921 ASUS US

· Zero Day Initiative · ZDI-26-431: ASUS Business Manager Service Client-Side Authentication Local Privilege Escalation Vulnerability