ASUS kayıtları
asus üreticisine ait 293 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 3 · %1
- Silahlaştırılmış
- 8 · %2,7
- Pre-auth RCE
- 30
- Düzeltme kaydı olan
- %0,7
- Yayından KEV’e ortanca
- 630 gün
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')34
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')26
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')25
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer12
- CWE-787 Out-of-bounds Write11
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor11
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
293 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
99Hemen | CVE-2021-32030Silahlaştırılmış | The administrator application on ASUS GT-AC2900 devices before 3.0.0.4.386.42643 and Lyra Mini before 3.0.0.4_384_46630 allows authenticatioasus · lyra mini firmware · CWE-287 | Kritik9,8 | KEV | %99,4 | 6 May 2021 |
77Bu hafta | CVE-2023-39780Silahlaştırılmış | On ASUS RT-AX55 3.0.0.4.386.51598 devices, authenticated attackers can perform OS command injection via the /start_apply.htm qos_bw_rulelistasus · rt-ax55 firmware · CWE-78 | Yüksek8,8 | KEV | %40,2 | 11 Eyl 2023 |
67Bu hafta | CVE-2025-59374Silahlaştırılmış | "UNSUPPORTED WHEN ASSIGNED" Certain versions of the ASUS Live Update client were distributed with unauthorized modifications introduced throasus · live update · CWE-506 | Kritik9,3 | KEV | %1,2 | 17 Ara 2025 |
65Bu hafta | CVE-2018-5999Silahlaştırılmış | An issue was discovered in AsusWRT before 3.0.0.4.384_10007.asus · asuswrt | Kritik9,8 | — | %87,3 | 22 Oca 2018 |
65Bu hafta | CVE-2018-6000Silahlaştırılmış | An issue was discovered in AsusWRT before 3.0.0.4.384_10007.asus · asuswrt · CWE-862 | Kritik9,8 | — | %85,2 | 22 Oca 2018 |
64Bu hafta | CVE-2014-9583Silahlaştırılmış | common.c in infosvr in ASUS WRT firmware 3.0.0.4.376_1071, 3.0.0.376.2524-g0013f52, and other versions, as used in RT-AC66U, RT-N66U, and otasus · wrt firmware · CWE-264 | Kritik10,0 | — | %80,2 | 8 Oca 2015 |
61Bu hafta | CVE-2008-1491Silahlaştırılmış | Stack-based buffer overflow in the DPC Proxy server (DpcProxy.exe) in ASUS Remote Console (aka ARC or ASMB3) 2.0.0.19 and 2.0.0.24 allows reasus · remote console · CWE-119 | Kritik10,0 | — | %70,1 | 25 Mar 2008 |
52Planlayın | CVE-2024-3080Kavram kanıtı | ASUS Router - Improper Authenticationasus · zenwifi xt8 · CWE-287 | Kritik9,8 | — | %43,5 | 13 Haz 2024 |
48Planlayın | CVE-2012-4924Silahlaştırılmış | Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 allows remote attackersasus · ipswcom activex component · CWE-119 | Kritik9,3 | — | %36,3 | 15 Eyl 2012 |
47Planlayın | CVE-2018-14714Kavram kanıtı | System command injection in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to execute system commands via the "loadasus · rt-ac3200 firmware | Kritik9,8 | — | %27,4 | 13 May 2019 |
45Planlayın | CVE-2017-6548Kavram kanıtı | Buffer overflows in networkmap on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-ACasus · rt-ac53 firmware · CWE-119 | Kritik9,8 | — | %21,3 | 9 Mar 2017 |
45Planlayın | CVE-2022-31874İstismar yok | ASUS RT-N53 3.0.0.4.376.3754 has a command injection vulnerability in the SystemCmd parameter of the apply.cgi interface.asus · rt-n53 firmware · CWE-77 | Kritik9,8 | — | %20,0 | 17 Haz 2022 |
44Planlayın | CVE-2023-26602Kavram kanıtı | ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as demonstratasus · asmb8-ikvm firmware · CWE-77 | Kritik9,8 | — | %17,4 | 26 Şub 2023 |
44Planlayın | CVE-2018-8879İstismar yok | Stack-based buffer overflow in Asuswrt-Merlin firmware for ASUS devices older than 384.4 and ASUS firmware before 3.0.0.4.382.50470 for deviasus · rt-ac66u firmware · CWE-787 | Kritik9,8 | — | %17,2 | 21 Kas 2019 |
43Planlayın | CVE-2013-4659Kavram kanıtı | Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916.asus · rt-ac66u firmware · CWE-119 | Kritik9,8 | — | %13,9 | 14 Mar 2017 |
42Planlayın | CVE-2019-10709Kavram kanıtı | AsusPTPFilter.sys on Asus Precision TouchPad 11.0.0.25 hardware has a Pool Overflow associated with the \\.\AsusTP device, leading to a DoS asus · precision touchpad · CWE-264 | Kritik9,8 | — | %11,5 | 4 Eyl 2019 |
42Planlayın | CVE-2013-6343Kavram kanıtı | Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow remote attackers toasus · tm-ac1900 firmware · CWE-119 | Kritik10,0 | — | %7,8 | 22 Oca 2014 |
41Planlayın | CVE-2018-11491İstismar yok | ASUS HG100 devices with firmware before 1.05.12 allow unauthenticated access, leading to remote command execution.asus · hg100 firmware · CWE-287 | Kritik9,8 | — | %6,7 | 25 Tem 2018 |
41Planlayın | CVE-2021-41435İstismar yok | A brute-force protection bypass in CAPTCHA protection in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, Rasus · gt-ax11000 firmware · CWE-307 | Kritik9,8 | — | %6,5 | 19 Kas 2021 |
41Planlayın | CVE-2013-4937İstismar yok | Multiple unspecified vulnerabilities in the AiCloud feature on the ASUS RT-AC66U, RT-N66U, RT-N65U, RT-N14U, RT-N16, RT-N56U, and DSL-N55U wasus · rt-ac66u firmware | Kritik10,0 | — | %1,9 | 26 Tem 2013 |
40Planlayın | CVE-2023-35086Kavram kanıtı | ASUS RT-AX56U V2 & RT-AC86U - Format String -1asus · rt-ac86u firmware · CWE-134 | Yüksek7,2 | — | %38,5 | 21 Tem 2023 |
40Planlayın | CVE-2022-4221İstismar yok | OS command injection in ASUS M25 NASasus · nas-m25 firmware · CWE-78 | Kritik9,8 | — | %4,9 | 1 Ara 2022 |
40Planlayın | CVE-2020-36109Kavram kanıtı | ASUS RT-AX86U router firmware below version under 9.0.0.4_386 has a buffer overflow in the blocking_request.cgi function of the httpd moduleasus · rt-ax86u firmware · CWE-120 | Kritik9,8 | — | %4,2 | 1 Şub 2021 |
40Planlayın | CVE-2018-8826İstismar yok | ASUS RT-AC51U, RT-AC58U, RT-AC66U, RT-AC1750, RT-ACRH13, and RT-N12 D1 routers with firmware before 3.0.0.4.380.8228; RT-AC52U B1, RT-AC1200asus · rt-ac51u firmware · CWE-20 | Kritik9,8 | — | %4,2 | 20 Nis 2018 |
40Planlayın | CVE-2018-20334İstismar yok | An issue was discovered in ASUSWRT 3.0.0.4.384.20308.asus · asuswrt · CWE-78 | Kritik9,8 | — | %3,8 | 19 Mar 2020 |
- CVE-2021-3203099Hemen
The administrator application on ASUS GT-AC2900 devices before 3.0.0.4.386.42643 and Lyra Mini before 3.0.0.4_384_46630 allows authenticatio
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %99asus · lyra mini firmware6 May 2021
- CVE-2023-3978077Bu hafta
On ASUS RT-AX55 3.0.0.4.386.51598 devices, authenticated attackers can perform OS command injection via the /start_apply.htm qos_bw_rulelist
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %40asus · rt-ax55 firmware11 Eyl 2023
- CVE-2025-5937467Bu hafta
"UNSUPPORTED WHEN ASSIGNED" Certain versions of the ASUS Live Update client were distributed with unauthorized modifications introduced thro
KritikCVSS 9,3KEVSilahlaştırılmışEPSS %1asus · live update17 Ara 2025
- CVE-2018-599965Bu hafta
An issue was discovered in AsusWRT before 3.0.0.4.384_10007.
KritikCVSS 9,8SilahlaştırılmışEPSS %87asus · asuswrt22 Oca 2018
- CVE-2018-600065Bu hafta
An issue was discovered in AsusWRT before 3.0.0.4.384_10007.
KritikCVSS 9,8SilahlaştırılmışEPSS %85asus · asuswrt22 Oca 2018
- CVE-2014-958364Bu hafta
common.c in infosvr in ASUS WRT firmware 3.0.0.4.376_1071, 3.0.0.376.2524-g0013f52, and other versions, as used in RT-AC66U, RT-N66U, and ot
KritikCVSS 10,0SilahlaştırılmışEPSS %80asus · wrt firmware8 Oca 2015
- CVE-2008-149161Bu hafta
Stack-based buffer overflow in the DPC Proxy server (DpcProxy.exe) in ASUS Remote Console (aka ARC or ASMB3) 2.0.0.19 and 2.0.0.24 allows re
KritikCVSS 10,0SilahlaştırılmışEPSS %70asus · remote console25 Mar 2008
- CVE-2024-308052Planlayın
ASUS Router - Improper Authentication
KritikCVSS 9,8Kavram kanıtıEPSS %43asus · zenwifi xt813 Haz 2024
- CVE-2012-492448Planlayın
Buffer overflow in the CxDbgPrint function in the ipswcom.dll ActiveX component 1.0.0.1 for ASUS Net4Switch 1.0.0020 allows remote attackers
KritikCVSS 9,3SilahlaştırılmışEPSS %36asus · ipswcom activex component15 Eyl 2012
- CVE-2018-1471447Planlayın
System command injection in appGet.cgi on ASUS RT-AC3200 version 3.0.0.4.382.50010 allows attackers to execute system commands via the "load
KritikCVSS 9,8Kavram kanıtıEPSS %27asus · rt-ac3200 firmware13 May 2019
- CVE-2017-654845Planlayın
Buffer overflows in networkmap on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-AC
KritikCVSS 9,8Kavram kanıtıEPSS %21asus · rt-ac53 firmware9 Mar 2017
- CVE-2022-3187445Planlayın
ASUS RT-N53 3.0.0.4.376.3754 has a command injection vulnerability in the SystemCmd parameter of the apply.cgi interface.
KritikCVSS 9,8İstismar yokEPSS %20asus · rt-n53 firmware17 Haz 2022
- CVE-2023-2660244Planlayın
ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as demonstrat
KritikCVSS 9,8Kavram kanıtıEPSS %17asus · asmb8-ikvm firmware26 Şub 2023
- CVE-2018-887944Planlayın
Stack-based buffer overflow in Asuswrt-Merlin firmware for ASUS devices older than 384.4 and ASUS firmware before 3.0.0.4.382.50470 for devi
KritikCVSS 9,8İstismar yokEPSS %17asus · rt-ac66u firmware21 Kas 2019
- CVE-2013-465943Planlayın
Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916.
KritikCVSS 9,8Kavram kanıtıEPSS %14asus · rt-ac66u firmware14 Mar 2017
- CVE-2019-1070942Planlayın
AsusPTPFilter.sys on Asus Precision TouchPad 11.0.0.25 hardware has a Pool Overflow associated with the \\.\AsusTP device, leading to a DoS
KritikCVSS 9,8Kavram kanıtıEPSS %12asus · precision touchpad4 Eyl 2019
- CVE-2013-634342Planlayın
Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow remote attackers to
KritikCVSS 10,0Kavram kanıtıEPSS %8asus · tm-ac1900 firmware22 Oca 2014
- CVE-2018-1149141Planlayın
ASUS HG100 devices with firmware before 1.05.12 allow unauthenticated access, leading to remote command execution.
KritikCVSS 9,8İstismar yokEPSS %7asus · hg100 firmware25 Tem 2018
- CVE-2021-4143541Planlayın
A brute-force protection bypass in CAPTCHA protection in ASUS ROG Rapture GT-AX11000, RT-AX3000, RT-AX55, RT-AX56U, RT-AX56U_V2, RT-AX58U, R
KritikCVSS 9,8İstismar yokEPSS %6asus · gt-ax11000 firmware19 Kas 2021
- CVE-2013-493741Planlayın
Multiple unspecified vulnerabilities in the AiCloud feature on the ASUS RT-AC66U, RT-N66U, RT-N65U, RT-N14U, RT-N16, RT-N56U, and DSL-N55U w
KritikCVSS 10,0İstismar yokEPSS %2asus · rt-ac66u firmware26 Tem 2013
- CVE-2023-3508640Planlayın
ASUS RT-AX56U V2 & RT-AC86U - Format String -1
YüksekCVSS 7,2Kavram kanıtıEPSS %39asus · rt-ac86u firmware21 Tem 2023
- CVE-2022-422140Planlayın
OS command injection in ASUS M25 NAS
KritikCVSS 9,8İstismar yokEPSS %5asus · nas-m25 firmware1 Ara 2022
- CVE-2020-3610940Planlayın
ASUS RT-AX86U router firmware below version under 9.0.0.4_386 has a buffer overflow in the blocking_request.cgi function of the httpd module
KritikCVSS 9,8Kavram kanıtıEPSS %4asus · rt-ax86u firmware1 Şub 2021
- CVE-2018-882640Planlayın
ASUS RT-AC51U, RT-AC58U, RT-AC66U, RT-AC1750, RT-ACRH13, and RT-N12 D1 routers with firmware before 3.0.0.4.380.8228; RT-AC52U B1, RT-AC1200
KritikCVSS 9,8İstismar yokEPSS %4asus · rt-ac51u firmware20 Nis 2018
- CVE-2018-2033440Planlayın
An issue was discovered in ASUSWRT 3.0.0.4.384.20308.
KritikCVSS 9,8İstismar yokEPSS %4asus · asuswrt19 Mar 2020