CVE-2025-12793

An uncontrolled DLL loading path vulnerability exists in AsusSoftwareManagerAgent. A local attacker may influence the application to load a DLL from an attacker-controlled location, potentially resulting in arbitrary code execution. Refer to the ' Security Update for MyASUS' section on the ASUS Security Advisory for more information.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:asus:myasus:*:*:*:*:*:*:x64:*
cpe:2.3:a:asus:myasus:*:*:*:*:*:*:arm64:*

History

17 Jun 2026, 08:32

Type Values Removed Values Added
Summary
  • (es) Existe una vulnerabilidad de ruta de carga de DLL no controlada en AsusSoftwareManagerAgent. Un atacante local puede influir en la aplicación para que cargue una DLL desde una ubicación controlada por el atacante, lo que podría resultar en ejecución de código arbitrario. Consulte la sección 'Security Update for MyASUS' en el Aviso de Seguridad de ASUS para más información.

28 Jan 2026, 14:50

Type Values Removed Values Added
CPE cpe:2.3:a:asus:myasus:*:*:*:*:*:*:x64:*
cpe:2.3:a:asus:myasus:*:*:*:*:*:*:arm64:*
First Time Asus
Asus myasus
References () https://www.asus.com/security-advisory - () https://www.asus.com/security-advisory - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

06 Jan 2026, 19:15

Type Values Removed Values Added
References () https://www.asus.com/security-advisory - () https://www.asus.com/security-advisory -

06 Jan 2026, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-06 03:15

Updated : 2026-06-17 08:32


NVD link : CVE-2025-12793

Mitre link : CVE-2025-12793

CVE.ORG link : CVE-2025-12793


JSON object : View

Products Affected

asus

  • myasus
CWE
CWE-426

Untrusted Search Path