CVE-2019-19235

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
18/12/2019
Last modified:
21/07/2021

Description

AsLdrSrv.exe in ASUS ATK Package before V1.0.0061 (for Windows 10 notebook PCs) could lead to unsigned code execution with no additional execution. The user must put an application at a particular path, with a particular file name.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:asus:atk_package:*:*:*:*:*:*:*:* 1.0.0061 (excluding)
cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*