Asus
Asus Router: vulnerabilidades y CVE
Asus Router tiene 9 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses4
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-14157 | Crítica (9.4) | — | — | 1 oct 2026 | Use of an Externally Controlled Format String in the ASUS Router modules allow a remote authenticated user to execute arbitrary commands via a crafted file uploaded through the web management interface. |
| CVE-2026-11851 | Media (5.9) | 0.50% | — | 15 jul 2026 | Improper Neutralization of Special Elements used in an SQL Command ("SQL Injection") in the web management interface of certain ASUS router models allows a remote authenticated user to disclose confidential information… |
| CVE-2025-59372 | Media (6.9) | 0.60% | — | 25 nov 2025 | A path traversal vulnerability has been identified in certain router models. A remote, authenticated attacker could exploit this vulnerability to write files outside the intended directory, potentially affecting device… |
| CVE-2025-59371 | Alta (7.5) | 0.75% | — | 25 nov 2025 | An authentication bypass vulnerability has been identified in the IFTTT integration feature. A remote, authenticated attacker could leverage this vulnerability to potentially gain unauthorized access to the device. This… |
| CVE-2024-13062 | Alta (7.2) | 0.98% | — | 2 ene 2025 | An unintended entry point vulnerability has been identified in certain router models, which may allow for arbitrary command execution. Refer to the ' 01/02/2025 ASUS Router AiCloud vulnerability' section on the ASUS… |
| CVE-2024-11985 | Media (4.4) | 0.36% | — | 4 dic 2024 | An improper input validation vulnerability leads to device crashes in certain ASUS router models. Refer to the '12/03/2024 ASUS Router Improper Input Validation' section on the ASUS Security Advisory for more… |
| CVE-2024-3912 | Crítica (9.8) | 1.0% | — | 14 jun 2024 | Certain models of ASUS routers have an arbitrary firmware upload vulnerability. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary system commands on the device. |
| CVE-2024-3080 | Crítica (9.8) | 43% | — | 14 jun 2024 | Certain ASUS router models have authentication bypass vulnerability, allowing unauthenticated remote attackers to log in the device. |
| CVE-2024-3079 | Alta (7.2) | 0.83% | — | 14 jun 2024 | Certain models of ASUS routers have buffer overflow vulnerabilities, allowing remote attackers with administrative privileges to execute arbitrary commands on the device. |