CVE-2026-8921
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
03/07/2026
Last modified:
06/07/2026
Description
External Control of File Name or Path vulnerability in ASUS Business Manager allows a local user to execute arbitrary code with SYSTEM privileges via a tampered IPC message.<br />
Refer to the &#39;<br />
Security Update for ASUS Business Manager &#39; section on the ASUS Security Advisory for more information.
Impact
Base Score 4.0
8.50
Severity 4.0
HIGH



