Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system. Refer to the ' Security Update for ASUS System Control Interface ' section on the ASUS Security Advisory for more information.
CVSS Information
CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:H/SI:N/SA:H
Vulnerability Type
不加限制或调节的资源分配
Vulnerability Title
ASUS System Control Interface v3 资源管理错误漏洞
Vulnerability Description
ASUS System Control Interface v3是中国ASUS公司的一款系统控制界面管理软件。 ASUS System Control Interface v3存在资源管理错误漏洞,该漏洞源于资源分配无限制和节流以及资源重用前敏感信息未移除问题,可能导致本地管理员通过特制IOCTL请求泄露敏感信息,严重情况下可能导致系统拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A