menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

13h

read

57

img
dot

Image Credit: Securityaffairs

Researchers found one-click RCE in ASUS’s pre-installed software DriverHub

  • Two vulnerabilities were found in DriverHub, pre-installed on Asus motherboards, allowing remote code execution via crafted HTTP requests.
  • The vulnerabilities, CVE-2025-3462 and CVE-2025-3463, were discovered by security researcher 'MrBruh' and could be exploited by a remote attacker to gain arbitrary code execution.
  • The flaws in DriverHub stem from insufficient validation, enabling misuse of features such as accepting requests from unauthorized domains.
  • Asus released security updates on May 9 in response to MrBruh's report, as the researcher highlighted the potential for remote code execution through the flawed DriverHub.

Read Full Article

like

3 Likes

For uninterrupted reading, download the app