CVE-2024-12912 – ASUS Router AiCloud Arbitrary Command Execution Vulnerability

The following table lists the changes that have been made to the
CVE-2024-12912 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by 54bf65a7-a193-42d2-b1ba-8e150d3c35e1

    Jan. 02, 2025

    Action Type Old Value New Value
    Added Description An improper input insertion vulnerability in AiCloud on certain router models may lead to arbitrary command execution.
    Refer to the ’01/02/2025 ASUS Router AiCloud vulnerability’ section on the ASUS Security Advisory for more information.
    Added CVSS V3.1 AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-20
    Added CWE CWE-77
    Added Reference https://www.asus.com/content/asus-product-security-advisory/
Share the Post:

Related Posts