First published: Wed Jul 26 2023(Updated: )
ASUS SetupAsusServices v1.0.5.1 in Asus Armoury Crate v5.3.4.0 contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Asus Armoury Crate | <=5.3.4.0 | |
ASUS SetupAsusServices | <=1.0.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-26911.
The title of this vulnerability is ASUS SetupAsusServices v1.0.5.1 in Asus Armoury Crate v5.3.4.0 contains an unquoted service path vulnerability.
The severity of CVE-2023-26911 is high, with a severity score of 7.8.
ASUS Armoury Crate version 5.3.4.0 and ASUS SetupAsusServices version 1.0.5.1 are affected by CVE-2023-26911.
This vulnerability allows local users to launch processes with elevated privileges.