Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-1878

Опубликовано: 12 мар. 2026
Источник: nvd
EPSS Низкий

Описание

An Insufficient Integrity Verification vulnerability in the ASUS ROG peripheral driver installation process allows privilege escalation to SYSTEM. The vulnerability is due to improper access control on the installation directory, which enables the exploitation of a race condition where the legitimate installer is substituted with an unexpected payload immediately after download, resulting in arbitrary code execution. Refer to the "Security Update for ASUS ROG peripheral driver" section on the ASUS Security Advisory for more information.

EPSS

Процентиль: 3%
0.0013
Низкий

Дефекты

CWE-494

Связанные уязвимости

github
5 месяцев назад

An Insufficient Integrity Verification vulnerability in the ASUS ROG peripheral driver installation process allows privilege escalation to SYSTEM. The vulnerability is due to improper access control on the installation directory, which enables the exploitation of a race condition where the legitimate installer is substituted with an unexpected payload immediately after download, resulting in arbitrary code execution. Refer to the "Security Update for ASUS ROG peripheral driver" section on the ASUS Security Advisory for more information.

CVSS3: 8.4
fstec
5 месяцев назад

Уязвимость драйверов управления функциями и настройками гарнитур и наушников Asus Headset Driver и компьютерных мышей Asus Mouse Driver, связанная с загрузкой кода без проверки его целостности, позволяющая нарушителю повысить свои привилегии до уровня SYSTEM

EPSS

Процентиль: 3%
0.0013
Низкий

Дефекты

CWE-494