CVE 7.5 HIGH

CVE-2025-59370_CVE-2025-59370

7.5 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

A command injection vulnerability has been identified in bwdpi. A remote, authenticated attacker could leverage this vulnerability to potentially execute arbitrary commands, leading to the device executing unintended instructions.
Refer to the 'Security Update for ASUS Router Firmware' section on the ASUS Security Advisory for more information.

Basic Information

ID CVE-2025-59370
Source ASUS
Published Nov 25, 2025 at 07:30
Modified Nov 25, 2025 at 14:08

Affected Product

Vendor ASUS
Product Router
Version 3.0.0.4_386
Affected Versions ASUS Router 3.0.0.4_386
ASUS Router 3.0.0.4_388
ASUS Router 3.0.0.6_102

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.