LIVE · cybersecurity feed
Live wire
cve record

CVE-2025-15037

Published
CVSS—
Severitynone
WeaknessCWE-732
ExploitedNot in CISA KEV

Description

An Incorrect Permission Assignment vulnerability exists in the ASUS Business System Control Interface driver. This vulnerability can be triggered by an unprivileged local user sending a specially crafted IOCTL request, potentially leading to unauthorized access to sensitive hardware resources and kernel information disclosure. Refer to the "ASUS Business System Control Interface" section on the ASUS Security Advisory for more information.

References

← Back to the CVE Tracker

Our coverage of CVE-2025-15037

No stories yet. This page updates automatically when we publish reporting that references CVE-2025-15037.