PT-2025-20479 · Asus · Asus Driverhub
Leonjza
+1
·
Published
2025-04-09
·
Updated
2026-02-10
·
CVE-2025-3463
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ASUS DriverHub versions prior to 1.0.6.0
Description
An insufficient validation issue exists in ASUS DriverHub. This issue is limited to motherboards and does not affect laptops, desktop computers, or other endpoints. The issue may allow untrusted sources to affect system behavior through crafted HTTP requests. The root cause is related to errors in the certificate authentication process. Exploitation of this issue can lead to a denial of service.
Recommendations
Update ASUS DriverHub to version 1.0.6.0 or later.
Fix
RCE
Improper Certificate Validation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Asus Driverhub