CVE-2026-16004
NONE—CVSS v3
—CVSS v2
—
EPSS (exploit probability)
CWE-782CWE
Description
Exposed IOCTL with Insufficient Access Control in Armoury Crate driver allows a local user to read and write arbitrary PCI/PCIe configuration space via crafted IOCTL requests by bypassing the driver's verification.
Refer to the '
Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.
Affected routers (0)
No routers currently mapped to this CVE in our database.