In a recent security advisory, ASUS has alerted users to critical vulnerabilities affecting several of its router models.
These flaws, tracked as CVE-2024-12912 and CVE-2024-13062, pose severe risks by allowing attackers to execute arbitrary commands on compromised devices. ASUS has advised users to act immediately by updating their routers to stay protected.
The two vulnerabilities are linked to the router firmware’s AiCloud feature. According to ASUS, these “injection and execution vulnerabilities” can allow authenticated attackers to trigger remote command execution.
Both flaws have been assigned a CVSS (Common Vulnerability Scoring System) score of 7.2, categorizing them as high severity.
CVE Details:
Users of vulnerable ASUS router models are at risk if these flaws are left unpatched.
To address these vulnerabilities, ASUS has urged users to quickly update their router firmware. The latest versions—3.0.0.4_386, 3.0.0.4_388, or 3.0.0.6_102 series—contain fixes that mitigate the risks.
For users who cannot immediately apply the updates, ASUS recommends the following mitigation practices:
This advisory emphasizes the critical importance of regularly updating router firmware and following strong security practices.
ASUS advises customers to frequently check their device settings and ensure all features are configured securely. The company encourages users to report any product-related security concerns through its dedicated vulnerability disclosure page.
Investigate Real-World Malicious Links, Malware & Phishing Attacks With ANY.RUN – Try for Free
Ivanti has issued an urgent security advisory for CVE-2025-22457, a critical vulnerability impacting Ivanti Connect…
A concerning malware campaign was disclosed by the AhnLab Security Intelligence Center (ASEC), revealing how…
EncryptHub, a rapidly evolving cybercriminal entity, has come under intense scrutiny following revelations of operational…
A sophisticated phishing campaign, dubbed "PoisonSeed," has been identified targeting customer relationship management (CRM) and…
A surge in phishing text messages claiming unpaid tolls has been linked to a massive…
The State Bar of Texas has confirmed a data breach following the detection of unauthorized…