CVE-2019-25764

NONE
CVSS v3
CVSS v2
0.09% EPSS (exploit probability)
CWE-782CWE

Description

**UNSUPPORTED WHEN ASSIGNED**  Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verification and invoke arbitrary IOCTLs, resulting in privilege escalation.

Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on the ASUS Security Advisory for more information.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references