An improper authentication control vulnerability exists in AiCloud. This vulnerability can be triggered by a crafted request, potentially leading to unauthorized execution of functions.
Refer to the 'ASUS Router AiCloud vulnerability' section on the ASUS Security Advisory for more information.
Refer to the 'ASUS Router AiCloud vulnerability' section on the ASUS Security Advisory for more information.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://www.asus.com/content/asus-product-security-advisory/ |
![]() ![]() |
History
Fri, 18 Apr 2025 12:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 18 Apr 2025 09:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An improper authentication control vulnerability exists in AiCloud. This vulnerability can be triggered by a crafted request, potentially leading to unauthorized execution of functions. Refer to the 'ASUS Router AiCloud vulnerability' section on the ASUS Security Advisory for more information. | |
Weaknesses | CWE-288 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: ASUS
Published:
Updated: 2025-05-20T08:21:39.574Z
Reserved: 2025-03-18T09:23:01.928Z
Link: CVE-2025-2492

Updated: 2025-04-18T11:36:27.270Z

Status : Awaiting Analysis
Published: 2025-04-18T09:15:13.823
Modified: 2025-04-21T14:23:45.950
Link: CVE-2025-2492

No data.

No data.