Nuke
8 credited records · 8 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2026-3179No exploit | A path traversal vulnerability was found in the FTP Backup on the ADM.asustor · data master · CWE-22 | Critical9.2 | — | 0.8% | Feb 25, 2026 |
33Monitor | CVE-2026-3100No exploit | An improper certificate validation vulnerability was found in the FTP Backup on the ADM.asustor · data master · CWE-295 | High8.3 | — | 0.3% | Feb 25, 2026 |
25Monitor | CVE-2026-24935No exploit | An improper certificate validation vulnerability was found in a third-party NAT traversal module.asustor · data master · CWE-295 | Medium6.3 | — | 0.2% | Feb 2, 2026 |
25Monitor | CVE-2026-24934No exploit | An improper certificate validation vulnerability was found in ADM while querying an external server for the device's WAN IP address.asustor · data master · CWE-295 | Medium6.3 | — | 0.2% | Feb 2, 2026 |
35Monitor | CVE-2026-24933No exploit | An improper certificate validation vulnerability was found in ADM while sending HTTPS requests to the server.asustor · data master · CWE-295 | High8.9 | — | 0.2% | Feb 2, 2026 |
35Monitor | CVE-2026-24932No exploit | An improper certificate validation vulnerability was found in ADM while updating the DDNS settings.asustor · data master · CWE-295 | High8.9 | — | 0.2% | Feb 2, 2026 |
28Monitor | CVE-2025-13053No exploit | A missing encryption of sensitive data vulnerability was found in the UPS settings of ADMasustor · data master · CWE-311 | High7.0 | — | 0.1% | Dec 11, 2025 |
28Monitor | CVE-2025-13052No exploit | An improper certificates validation vulnerability was found in the Notification settings of ADMasustor · data master · CWE-295 | High7.0 | — | 0.2% | Dec 11, 2025 |
- CVE-2026-317936Monitor
A path traversal vulnerability was found in the FTP Backup on the ADM.
CriticalCVSS 9.2No exploitEPSS 1%asustor · data masterFeb 25, 2026
- CVE-2026-310033Monitor
An improper certificate validation vulnerability was found in the FTP Backup on the ADM.
HighCVSS 8.3No exploitEPSS 0%asustor · data masterFeb 25, 2026
- CVE-2026-2493525Monitor
An improper certificate validation vulnerability was found in a third-party NAT traversal module.
MediumCVSS 6.3No exploitEPSS 0%asustor · data masterFeb 2, 2026
- CVE-2026-2493425Monitor
An improper certificate validation vulnerability was found in ADM while querying an external server for the device's WAN IP address.
MediumCVSS 6.3No exploitEPSS 0%asustor · data masterFeb 2, 2026
- CVE-2026-2493335Monitor
An improper certificate validation vulnerability was found in ADM while sending HTTPS requests to the server.
HighCVSS 8.9No exploitEPSS 0%asustor · data masterFeb 2, 2026
- CVE-2026-2493235Monitor
An improper certificate validation vulnerability was found in ADM while updating the DDNS settings.
HighCVSS 8.9No exploitEPSS 0%asustor · data masterFeb 2, 2026
- CVE-2025-1305328Monitor
A missing encryption of sensitive data vulnerability was found in the UPS settings of ADM
HighCVSS 7.0No exploitEPSS 0%asustor · data masterDec 11, 2025
- CVE-2025-1305228Monitor
An improper certificates validation vulnerability was found in the Notification settings of ADM
HighCVSS 7.0No exploitEPSS 0%asustor · data masterDec 11, 2025