CVE-2022-36439
6.0
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Exploitability: 0.8 / Impact: 5.2
Source: NVD
Description
AsusSoftwareManager.exe in ASUS System Control Interface on ASUS personal computers (running Windows) allows a local user to write into the Temp directory and delete another more privileged file via SYSTEM privileges. This affects ASUS System Control Interface 3 before 3.1.5.0, AsusSoftwareManger.exe before 1.0.53.0, and AsusLiveUpdate.dll before 1.0.45.0.
Affected (3)
Products: Asus: Asusliveupdate, Asussoftwaremanger, System Control Interface
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.45.0 | |
| Before 1.0.53.0 | |
| From 3.0.0.0 to 3.1.5.0 |
References (4)
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.