Asus
asus
272 CVEs • 897 products
Products (897)
Click to collapseToggle
Products (897)
Click to collapse
CVEs (272)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
ASUS RT-AX56U’s login function contains a path traversal vulnerability due to its inadequate filtering for special characters in URL parameters, which allows an unauthenticated local area network attacker to access restr...Show more |
Invalid input sanitizing leads to reflected Cross Site Scripting (XSS) in ASUS RT-AC52U_B1 3.0.0.4.380.10931 can lead to a user session hijack. |
ASUS RT-AX56U Wi-Fi Router is vulnerable to stack-based buffer overflow due to improper validation for httpd parameter length. An authenticated local area network attacker can launch arbitrary code execution to control t...Show more |
ASUS RT-N53 3.0.0.4.376.3754 devices have a buffer overflow via a long lan_dns1_x or lan_dns2_x parameter to Advanced_LAN_Content.asp. |
1Asus 18Gt Ax11000 Firmware Rt Ax3000 FirmwareRt Ax55 Firmware+15 moreNov 21, 2024 Nov 19, 2021 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 An HTTP request smuggling in web application in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, RT-AX82U, RT-AX82U GUNDAM EDITION, RT-AX86 Series(RT-AX86U/RT-AX86S), RT-AX86U ZAKU II EDI...Show more |
1Asus 18Gt Ax11000 Firmware Rt Ax3000 FirmwareRt Ax55 Firmware+15 moreNov 21, 2024 Nov 19, 2021 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 A brute-force protection bypass in CAPTCHA protection in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, RT-AX82U, RT-AX82U GUNDAM EDITION, RT-AX86 Series(RT-AX86U/RT-AX86S), RT-AX86U ZA...Show more |
ASUS P453UJ contains the Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability. With a general user’s permission, local attackers can modify the BIOS by replacing or filling in the content...Show more |
1Asus 5Gt Axe11000 Firmware Rt Ax3000 FirmwareRt Ax55 Firmware+2 moreNov 21, 2024 Nov 12, 2021 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 ASUS routers Wi-Fi protected access protocol (WPA2 and WPA3-SAE) has improper control of Interaction frequency vulnerability, an unauthenticated attacker can remotely disconnect other users' connections by sending specia...Show more |
ASUSTek ZenBook Pro Due 15 UX582 laptop firmware through 203 has Insecure Permissions that allow attacks by a physically proximate attacker. |
1Asus 1Armoury Crate Lite Service Nov 21, 2024 Sep 27, 2021 N/A· v4 7.3 HIGH· v3 4.4 MEDIUM· v2 ASUS ROG Armoury Crate Lite before 4.2.10 allows local users to gain privileges by placing a Trojan horse file in the publicly writable %PROGRAMDATA%\ASUS\GamingCenterLib directory. |
1Asus 2Gt Ac2900 Firmware Lyra Mini FirmwareNov 10, 2025 May 6, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The administrator application on ASUS GT-AC2900 devices before 3.0.0.4.386.42643 and Lyra Mini before 3.0.0.4_384_46630 allows authentication bypass when processing remote input from an unauthenticated user, leading to u...Show more |
1Asus 27Rt Ac1750 B1 Firmware Rt Ac1900 FirmwareRt Ac1900p Firmware+24 moreNov 21, 2024 Apr 12, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In ASUS RT-AX3000, ZenWiFi AX (XT8), RT-AX88U, and other ASUS routers with firmware < 3.0.0.4.386.42095 or < 9.0.0.4.386.41994, when IPv6 is used, a routing loop can occur that generates excessive network traffic between...Show more |
AsIO2_64.sys and AsIO2_32.sys in ASUS GPUTweak II before 2.3.0.3 allow low-privileged users to trigger a stack-based buffer overflow. This could enable low-privileged users to achieve Denial of Service via a DeviceIoCont...Show more |
AsIO2_64.sys and AsIO2_32.sys in ASUS GPUTweak II before 2.3.0.3 allow low-privileged users to interact directly with physical memory (by calling one of several driver routines that map physical memory into the virtual a...Show more |
1Asus 44Asmb9 Ikvm Firmware E700 G4 FirmwareEsc4000 Dhd G4 Firmware+41 moreNov 21, 2024 Apr 6, 2021 N/A· v4 4.9 MEDIUM· v3 6.8 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path...Show more |
1Asus 44Asmb9 Ikvm Firmware E700 G4 FirmwareEsc4000 Dhd G4 Firmware+41 moreNov 21, 2024 Apr 6, 2021 N/A· v4 4.9 MEDIUM· v3 6.8 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Get video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path tra...Show more |
1Asus 44Asmb9 Ikvm Firmware E700 G4 FirmwareEsc4000 Dhd G4 Firmware+41 moreNov 21, 2024 Apr 6, 2021 N/A· v4 4.9 MEDIUM· v3 6.8 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Get Help file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path trav...Show more |
1Asus 44Asmb9 Ikvm Firmware E700 G4 FirmwareEsc4000 Dhd G4 Firmware+41 moreNov 21, 2024 Apr 6, 2021 N/A· v4 4.9 MEDIUM· v3 6.8 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Record video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path...Show more |
1Asus 3Asmb8 Ikvm Firmware Z10pe D16 Ws FirmwareZ10pr D16 FirmwareNov 21, 2024 Apr 6, 2021 N/A· v4 4.9 MEDIUM· v3 6.8 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Delete SOL video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of p...Show more |
1Asus 3Asmb8 Ikvm Firmware Z10pe D16 Ws FirmwareZ10pr D16 FirmwareNov 21, 2024 Apr 6, 2021 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can launch command...Show more |