Sploitus

CVE-2026-13585

1 known exploit for CVE-2026-13585

Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system. Refer to the '  Security Update for ASUS System Control Interface  ' section on the ASUS Security Advisory for more information.

Fix
Available
CVSS 4.0
8.2 HIGH
EPSS
0.2% (6th percentile)
Weakness
CWE-226, CWE-770
NVD status
Deferred
Published
2026-07-15
CVE-2026-13585 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2026-13585

Proof-of-concept code and exploit modules indexed by Sploitus