CVE Published: 14/06/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2024 Source: twcert |
Vendor: ASUS |
Product: Download Master Status : PUBLISHED
CVE-2024-31162 Description
The specific function parameter of ASUS Download Master does not properly filter user input. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.
Metrics
CVSS Version: 3.1 |
Base Score: 7.2 HIGH Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H