Security Advisory

CVE-2025-59373

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-25 02:03:36
Last updated 2025-11-25 14:36:36
Assigner ASUS
State PUBLISHED

Description

A local privilege escalation vulnerability exists in the restore mechanism of ASUS System Control Interface. It can be triggered when an unprivileged actor copies files without proper validation into protected system paths, potentially leading to arbitrary files being executed as SYSTEM. For more information, please refer to section Security Update for MyASUS in the ASUS Security Advisory.