CVE-2026-19397
NONE—CVSS v3
—CVSS v2
—
EPSS (exploit probability)
CWE-306CWE
Description
Missing authentication for a critical function in ASUS Control Center Express Agent allows an unauthenticated nearby user to control the host via a direct connection to the agent when the host has an active login session.
Refer to the '
Security Update for ASUS Control Center Express Agent ' section on the ASUS Security Advisory for more information.
Affected routers (0)
No routers currently mapped to this CVE in our database.