PT-2025-20479 · Asus · Asus Driverhub

Leonjza

+1

·

Published

2025-04-09

·

Updated

2026-02-10

·

CVE-2025-3463

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions ASUS DriverHub versions prior to 1.0.6.0
Description An insufficient validation issue exists in ASUS DriverHub. This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints. The issue may allow untrusted sources to affect system behavior through crafted HTTP requests. The root cause is related to errors in the certificate authentication process. Exploitation of this issue can lead to a denial of service.
Recommendations Update ASUS DriverHub to version 1.0.6.0 or later.

Fix

RCE

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

BDU:2025-09520
CVE-2025-3463

Affected Products

Asus Driverhub