cbcvebase.

Asus Business Manager vulnerabilities

3 known vulnerabilities affecting asus/business_manager.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2026-15029P3HIGHCVSS 8.4≤ v3.0.38.02026-07-15
CVE-2026-15029 [HIGH] CWE-822 CVE-2026-15029: Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, an Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to perform arbitrary physical memory read and write operations via crafted IOCTL requests to the driver, bypassing OS-enforced memory protections. Refer to the ' Security Update for ASUS System Contro
nvd
CVE-2026-13585P3HIGHCVSS 8.2≤ v3.0.38.02026-07-15
CVE-2026-13585 [HIGH] CWE-226 CVE-2026-13585: Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Remo Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system.
nvd
CVE-2026-15030P4MEDIUMCVSS 5.6≤ v3.0.38.02026-07-15
CVE-2026-15030 [MEDIUM] CWE-125 CVE-2026-15030: Out-of-bounds Read in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Busi Out-of-bounds Read in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to read memory regions beyond the intended firmware boundary by supplying a crafted IOCTL request that bypasses the validation. Refer to the ' Security Update for ASUS System Control Interface ' section on the
nvd
Asus Business Manager vulnerabilities | cvebase