Vulnerabilities > Asus

DATE CVE VULNERABILITY TITLE RISK
2024-06-14 CVE-2024-31159 Cross-site Scripting vulnerability in Asus Download Master
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input.
network
low complexity
asus CWE-79
4.8
2024-06-14 CVE-2024-31160 Cross-site Scripting vulnerability in Asus Download Master
The parameter used in the certain page of ASUS Download Master is not properly filtered for user input.
network
low complexity
asus CWE-79
4.8
2024-06-14 CVE-2024-31161 Unrestricted Upload of File with Dangerous Type vulnerability in Asus Download Master
The upload functionality of ASUS Download Master does not properly filter user input.
network
low complexity
asus CWE-434
7.2
2024-01-19 CVE-2023-5716 Missing Authentication for Critical Function vulnerability in Asus Armoury Crate
ASUS Armoury Crate has a vulnerability in arbitrary file write and allows remote attackers to access or modify arbitrary files by sending specific HTTP requests without permission.
network
low complexity
asus CWE-306
critical
9.8
2023-11-15 CVE-2023-47678 Unspecified vulnerability in Asus Rt-Ac87U Firmware
An improper access control vulnerability exists in RT-AC87U all versions.
network
low complexity
asus
critical
9.1
2023-11-03 CVE-2023-41345 OS Command Injection vulnerability in Asus Rt-Ax55 Firmware 3.0.0.4.386.51598
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its token-generated module.
network
low complexity
asus CWE-78
8.8
2023-11-03 CVE-2023-41346 OS Command Injection vulnerability in Asus Rt-Ax55 Firmware 3.0.0.4.386.51598
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its token-refresh module.
network
low complexity
asus CWE-78
8.8
2023-11-03 CVE-2023-41347 OS Command Injection vulnerability in Asus Rt-Ax55 Firmware 3.0.0.4.386.51598
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its check token module.
network
low complexity
asus CWE-78
8.8
2023-11-03 CVE-2023-41348 OS Command Injection vulnerability in Asus Rt-Ax55 Firmware 3.0.0.4.386.51598
ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters within its code-authentication module.
network
low complexity
asus CWE-78
8.8
2023-09-18 CVE-2023-41349 Use of Externally-Controlled Format String vulnerability in Asus Rt-Ax88U Firmware
ASUS router RT-AX88U has a vulnerability of using externally controllable format strings within its Advanced Open VPN function.
network
low complexity
asus CWE-134
8.8