Improper Access Control in ASUS Secure Delete Driver of ASUS Business Manager
CVE-2025-13348
8.5HIGH
What is CVE-2025-13348?
An improper access control vulnerability in the ASUS Secure Delete Driver of ASUS Business Manager allows local users to send specially crafted requests. This can result in the creation of arbitrary files at specified paths, potentially compromising system integrity and security. For comprehensive details, refer to the ASUS Security Advisory.
Affected Version(s)
ASUS Business Manager 0 < 3.0.37.0