ASUS System Control Interface v3是中国ASUS公司的一款系统控制界面管理软件。 ASUS System Control Interface v3存在资源管理错误漏洞,该漏洞源于资源分配无限制和节流以及资源重用前敏感信息未移除问题,可能导致本地管理员通过特制IOCTL请求泄露敏感信息,严重情况下可能导致系统拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ASUS | Business Manager | through v3.0.38.0 |
affected |
| ASUS | System Control Interface | before v1.1.40.0 |
affected |
| ASUS | System Control Interface v3 | before v3.1.66.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ASUS | System Control Interface v3 | before v3.1.66.0 | - |
|
| ASUS | System Control Interface | before v1.1.40.0 | - |
|
| ASUS | Business Manager | through v3.0.38.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-13385 | 9.5 CRITICAL | ASUS Router 加密问题漏洞 |
| CVE-2026-15029 | 8.4 HIGH | ASUS System Control Interface v3 缓冲区错误漏洞 |
| CVE-2026-8919 | 7.2 HIGH | ASUS GameSDK 配置错误漏洞 |
| CVE-2026-15030 | 5.6 MEDIUM | ASUS System Control Interface v3 缓冲区错误漏洞 |
| CVE-2026-11851 | ASUS Router SQL注入漏洞 | |
| CVE-2026-8920 | ASUS Aura Wallpaper Service 输入验证错误漏洞 |
No comments yet