SEPTEMBER 11, 2026
Live Feed
Back to database
Case File

CVE-2026-15030

MEDIUM · CVSS 5.6 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager are vulnerable to an out-of-bounds read, which allows local administrators to access memory regions beyond the intended firmware boundaries through specially crafted IOCTL requests. This vulnerability could lead to unauthorized data exposure, potentially compromising sensitive information stored in memory. Organizations using these ASUS products should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-15030
Severity
MEDIUM
CVSS
5.6
EPSS
0.11%

Original NVD Description

Out-of-bounds Read in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to read memory regions beyond the intended firmware boundary by supplying a crafted IOCTL request that bypasses the validation. Refer to the ' Security Update for ASUS System Control Interface  ' section on the ASUS Security Advisory for more information.