CVE-2019-25764
NONE—CVSS v3
—CVSS v2
0.09%
EPSS (exploit probability)
CWE-782CWE
Description
**UNSUPPORTED WHEN ASSIGNED** Exposed IOCTL with Insufficient Access Control in the ASUS AURA SYNC driver allows a local user to bypass the driver's verification and invoke arbitrary IOCTLs, resulting in privilege escalation.
Refer to the 'End-of-Life Notice and Driver Update for Legacy ASUS Drivers ' section on the ASUS Security Advisory for more information.
Affected routers (0)
No routers currently mapped to this CVE in our database.