Description
External Control of File Name or Path vulnerability in ASUS Business Manager allows a local user to execute arbitrary code with SYSTEM privileges via a tampered IPC message.
Refer to the '
Security Update for ASUS Business Manager ' section on the ASUS Security Advisory for more information.
Refer to the '
Security Update for ASUS Business Manager ' section on the ASUS Security Advisory for more information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://www.asus.com/security-advisory |
|
History
Fri, 03 Jul 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | External Control of File Name or Path vulnerability in ASUS Business Manager allows a local user to execute arbitrary code with SYSTEM privileges via a tampered IPC message. Refer to the ' Security Update for ASUS Business Manager ' section on the ASUS Security Advisory for more information. | |
| First Time appeared |
Asus
Asus asus Business Manager |
|
| Weaknesses | CWE-73 | |
| CPEs | cpe:2.3:a:asus:asus_business_manager:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Asus
Asus asus Business Manager |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ASUS
Published:
Updated: 2026-07-03T02:00:34.858Z
Reserved: 2026-05-19T05:59:12.172Z
Link: CVE-2026-8921
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-73
External Control of File Name or Path