Description
The specific function parameter of ASUS Download Master does not properly filter user input. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.
Published: 2024-06-14
Score: 7.2 High
EPSS: 1.4% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update to 3.1.0.114 or later version.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-29066 The specific function parameter of ASUS Download Master does not properly filter user input. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.
History

No history.

Subscriptions

Asus Download Master
cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-08-02T01:46:04.365Z

Reserved: 2024-03-29T07:18:19.359Z

Link: CVE-2024-31162

cve-icon Vulnrichment

Updated: 2024-06-18T20:42:13.841Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-14T07:15:50.153

Modified: 2024-11-21T09:12:56.727

Link: CVE-2024-31162

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses