ASUS Armoury Crate has a vulnerability in arbitrary file write and allows remote attackers to access or modify arbitrary files by sending specific HTTP requests without permission.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58003 | ASUS Armoury Crate has a vulnerability in arbitrary file write and allows remote attackers to access or modify arbitrary files by sending specific HTTP requests without permission. |
Fixes
Solution
Update to version V4.1.0.8
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-7666-fffce-1.html |
|
History
Tue, 17 Jun 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 14 Oct 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-610 |
Mon, 14 Oct 2024 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-306 |
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-06-17T21:19:24.261Z
Reserved: 2023-10-23T09:44:01.105Z
Link: CVE-2023-5716
Updated: 2024-08-02T08:07:32.543Z
Status : Modified
Published: 2024-01-19T04:15:09.360
Modified: 2024-11-21T08:42:20.620
Link: CVE-2023-5716
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD