CVE-2025-13348

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
02/02/2026
Last modified:
02/02/2026

Description

An improper access control vulnerability exists in ASUS Secure Delete Driver of ASUS Business Manager. This vulnerability can be triggered by a local user sending a specially crafted request, potentially leading to the creation of arbitrary files in a specified path. Refer to the "Security Update for ASUS Business Manager" section on the ASUS Security Advisory for more information.

References to Advisories, Solutions, and Tools