CVE-2026-13585
NONE—CVSS v3
—CVSS v2
0.31%
EPSS (exploit probability)
CWE-226CWE
Description
Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system.
Refer to the '
Security Update for ASUS System Control Interface ' section on the ASUS Security Advisory for more information.
Affected routers (0)
No routers currently mapped to this CVE in our database.