CVE-2025-2492
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Apr 18, 2025
Updated: Apr 21, 2025
CWE ID 121
Summary
CVE-2025-2492 is an authentication control vulnerability affecting ASUS AiCloud. Maliciously crafted requests can exploit this weakness, potentially granting unauthorized access and enabling unauthorized execution of functions, as detailed in the ASUS Security Advisory on the 'ASUS Router AiCloud vulnerability'.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Xmlsoft