-Infinity
0

ASUS ASUS AURA SYNC driver**UNSUPPORTED WHEN ASSIGNED**  Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC …

Risk 66
Severity
7.3
First published (updated )

ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping 0-day writeup + PoC

First published (updated )
Social
reddit

ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping via Unvalidated IOCTL

First published (updated )
Social
reddit

ASUS ASUS Router FirmwareAn Improper Validation of Integrity Check Value and Improper Certificate Validation in certain ASUS …

Risk 80
Severity
9.5
First published (updated )

ASUS ASUS System Control InterfaceUntrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, an…

Risk 67
Severity
8.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ASUS ASUS System Control InterfaceOut-of-bounds Read in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Busi…

Risk 29
Severity
5.6
First published (updated )

ASUS ASUS System Control Interface driverAllocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Remo…

Risk 60
Severity
8.2
First published (updated )

ASUS Aura Wallpaper ServiceImproper Restriction of Communication Channel to Intended Endpoints and External Control of File Nam…

Risk 52
Severity
8.5
EPSS
0.10%
First published (updated )

ASUS ASUS GameSDKPermissive Cross-domain Security Policy with Untrusted Domains in ASUS GameSDK allows a remote user …

Risk 41
Severity
7.2
EPSS
0.30%
First published (updated )

ASUS ASUS Router FirmwareSQL Injection, Input Validation

Risk 32
Severity
5.9
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ASUS ASUS AI Suite 3 driver** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Su…

Risk 73
Severity
8.5
First published (updated )

ASUS AI Suite 3** UNSUPPORTED WHEN ASSIGNED ** Improper Validation of Specified Quantity in Input in the ASUS AI Su…

Risk 66
Severity
7.3
First published (updated )

ASUS ASUS Business ManagerExternal Control of File Name or Path vulnerability in ASUS Business Manager allows a local user to …

Risk 54
Severity
8.5
EPSS
0.12%
First published (updated )

ASUS ASUS Router Android AppAn Improper Export of Android Application Components vulnerability in ASUS Router App allows a third…

Risk 35
Severity
6
First published (updated )

ASUS Armoury CrateA permissive list of allowed inputs in ASUS Armoury Crate allows a local administrator to perform ar…

Risk 47
Severity
7.1
EPSS
0.28%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ASUS ASUS MyASUSZDI-26-328: ASUS MyASUS Origin Validation Error Local Privilege Escalation Vulnerability

Risk 46
First published (updated )

ASUS MyASUSASUS MyASUS Origin Validation Error Local Privilege Escalation Vulnerability

Risk 46
First published (updated )
Advisory
ZDI-26-328

ASUS MyASUSZDI-26-328: ASUS MyASUS Origin Validation Error Local Privilege Escalation Vulnerability

Risk 46
First published (updated )

ASUS ASUS System Control InterfaceAn Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interf…

Risk 66
Severity
7.3
First published (updated )

ASUS Armoury Crate AppIncorrect permission assignment for a critical resource in Armoury Crate allows a local user to bypa…

Risk 66
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ASUS ASUS System Control InterfaceAn Out-of-bounds Read vulnerability in the IOCTL handler in ASUS System Control Interface allows a l…

Risk 37
Severity
6.8
First published (updated )

ASUS ASUS Precision Touchpad (AsusPTPFilter)An Exposed IOCTL with Insufficient Access Control vulnerability in AsusPTPFilter allows a local user…

Risk 21
Severity
2
EPSS
0.01%
First published (updated )

ASUS ASUS Member CenterA Download of Code Without Integrity Check vulnerability in the update modules in ASUS Member Center…

Risk 55
Severity
5.4
First published (updated )

ASUS ASUS DriverHubAn Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub update …

Risk 55
Severity
5.4
First published (updated )

ASUS ASUS Router FirmwareOS Command Injection, Command Injection

Risk 77
Severity
8.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ASUS Business System Control InterfaceAn Out-of-Bounds Read vulnerability exists in the ASUS Business System Control Interface driver. Thi…

Risk 53
Severity
6.9
First published (updated )

ASUS ROG peripheral driverRace Condition

Risk 58
Severity
5.4
First published (updated )

ASUS Business System Control InterfaceAn Incorrect Permission Assignment vulnerability exists in the ASUS Business System Control Interfac…

Risk 37
Severity
6.8
First published (updated )

ASUS Business ManagerAn improper access control vulnerability exists in ASUS Secure Delete Driver of ASUS Business Manage…

Risk 73
Severity
8.5
First published (updated )

ASUS MyASUSAn uncontrolled DLL loading path vulnerability exists in AsusSoftwareManagerAgent. A local attacker …

Risk 73
Severity
8.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203