216.73.217.80

CVE-2025-59373

· Published 25/11/2025 02:15 · Modified 25/11/2025 22:16

Labels: CVE-2025-59373 2025-11-2554bf65a7-a193-42d2-b1ba-8e150d3c35e1CVE-2025-59373CWE-732

Essential information

Published
25/11/2025 02:15
Modified
25/11/2025 22:16
Author
Creator
CVSS
8.5 HIGH (v3) 8.5 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A local privilege escalation vulnerability exists in the restore mechanism of ASUS System Control Interface. It can be triggered when an unprivileged actor copies files without proper validation into protected system paths, potentially leading to arbitrary files being executed as SYSTEM. For more information, please refer to section Security Update for MyAsus in the ASUS Security Advisory.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
54bf65a7-a193-42d2-b1ba-8e150d3c35e1
NVD
View on NVD

References