Security Advisory

CVE-2026-7480

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-29 02:06:43
Last updated 2026-05-29 16:24:56
Assigner ASUS
CVSS score 7.3
State PUBLISHED

Description

An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interface allows a local user to elevate privileges to SYSTEM and execute arbitrary code via a crafted RPC call that bypass the validation mechanism. Refer to the 'Security Update for ASUS System Control Interface' section on the ASUS Security Advisory for more information.