System Control Interface v3 vulnerability

Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local administrator to perform arbitrary physical memory read and write operations via crafted IOCTL requests to the driver, bypassing OS-enforced memory protections. Refer to the '  Security Update for ASUS System Control Interface  ' section on the ASUS Security Advisory for more information.

Published 15 Jul 2026Updated 17 Sep 20261 sources
CVSS 8.4

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.