Insufficient Validation Vulnerability in ASUS DriverHub
CVE-2025-3463

9.4CRITICAL

Key Information:

Vendor

Asus

Status
Vendor
CVE Published:
9 May 2025

What is CVE-2025-3463?

An insufficient validation vulnerability in ASUS DriverHub could allow untrusted sources to disrupt normal system operations through crafted HTTP requests. This issue is specifically limited to motherboards and does not impact laptops, desktop computers, or other endpoint devices. For further details, please refer to ASUS's official security advisory.

Affected Version(s)

DriverHub before 1.0.6.0

References

CVSS V4

Score:
9.4
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.