AsusSwitch.exe on ASUS personal computers (running Windows) sets weak file permissions, leading to local privilege escalation (this also can be used to delete files within the system arbitrarily). This affects ASUS System Control Interface 3 before 3.1.5.0, and AsusSwitch.exe before 1.0.10.0.
Metrics
Affected Vendors & Products
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 13 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-18T00:00:00.000Z
Updated: 2025-05-13T14:51:25.051Z
Reserved: 2022-07-25T00:00:00.000Z
Link: CVE-2022-36438
Updated: 2024-08-03T10:07:33.104Z
Status : Modified
Published: 2022-10-18T12:15:09.420
Modified: 2025-05-13T15:15:48.827
Link: CVE-2022-36438
No data.