216.73.217.22

CVE-2025-2492

· Published 18/04/2025 09:15 · Modified 18/04/2025 09:15

Labels: CVE-2025-2492 2025-04-1854bf65a7-a193-42d2-b1ba-8e150d3c35e1CVE-2025-2492CWE-288

Essential information

Published
18/04/2025 09:15
Modified
18/04/2025 09:15
Author
Creator
CVSS
9.2 CRITICAL (v3) 9.2 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

An improper authentication control vulnerability exists in AiCloud. This vulnerability can be triggered by a crafted request, potentially leading to unauthorized execution of functions. Refer to the 'ASUS Router AiCloud vulnerability' section on the ASUS Security Advisory for more information.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
54bf65a7-a193-42d2-b1ba-8e150d3c35e1
NVD
View on NVD

Affected products (CPE)

ProductCPE
asus / aicloud cpe:2.3:a:asus:aicloud:*:*:*:*:*:*:*:*

References