Security Advisory

CVE-2025-13348

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-02 02:00:38
Last updated 2026-02-02 14:38:08
Assigner ASUS
State PUBLISHED

Description

An improper access control vulnerability exists in ASUS Secure Delete Driver of ASUS Business Manager. This vulnerability can be triggered by a local user sending a specially crafted request, potentially leading to the creation of arbitrary files in a specified path. Refer to the "Security Update for ASUS Business Manager" section on the ASUS Security Advisory for more information.