← Back

Armoury Crate

armoury_crate

Vendor: Asus • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Asus
1Armoury Crate
Nov 21, 2024
Jan 19, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
ASUS Armoury Crate has a vulnerability in arbitrary file write and allows remote attackers to access or modify arbitrary files by sending specific HTTP requests without permission.
1Asus
2Armoury Crate
Setupasusservices
Nov 21, 2024
Jul 26, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
ASUS SetupAsusServices v1.0.5.1 in Asus Armoury Crate v5.3.4.0 contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.
1Asus
1Armoury Crate
Mar 19, 2025
Feb 15, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
ASUS EC Tool driver (aka d.sys) 1beb15c90dcf7a5234ed077833a0a3e900969b60be1d04fcebce0a9f8994bdbb, as signed by ASUS and shipped with multiple ASUS software products, contains multiple IOCTL handlers that provide raw read...Show more
ASUS EC Tool driver (aka d.sys) 1beb15c90dcf7a5234ed077833a0a3e900969b60be1d04fcebce0a9f8994bdbb, as signed by ASUS and shipped with multiple ASUS software products, contains multiple IOCTL handlers that provide raw read and write access to port I/O and MSRs via unprivileged IOCTL calls. Local users can gain privileges.Show less