CVE-2026-12960: Medium severity ASUS ASUS Router Android App vulnerability
An Improper Export of Android Application Components vulnerability in ASUS Router App allows a third-party application on the same device to send a crafted Intent that causes ASUS Router App to open an specified URL. Refer to the ' Security Update for ASUS Router Android App ' section on the ASUS Security Advisory for more information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-12960?
CVE-2026-12960 has a medium severity rating of 6 on the CVSS scale.
How do I fix CVE-2026-12960?
To remediate CVE-2026-12960, update to the latest version of the ASUS Router Android App as recommended in the security advisory.
What kind of vulnerability is CVE-2026-12960?
CVE-2026-12960 is classified as an Improper Export of Android Application Components vulnerability.
What can be exploited in CVE-2026-12960?
CVE-2026-12960 can be exploited by a third-party application to send a crafted Intent that opens a specified URL in the ASUS Router App.
Which application is affected by CVE-2026-12960?
CVE-2026-12960 affects the ASUS Router Android App.