Skip to content

Products › Brands

Brand

ASUS: actively exploited vulnerabilities

3 vulnerabilities in ASUS products (Routers (RT, GT, ZenWiFi), Live Update) are in CISA’s catalog of exploited vulnerabilities. Last added: December 17, 2025.

By category

Add just one ASUS category to your radar, or open its page.

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

Affected products

Follow a single ASUS product (Routers (RT, GT, ZenWiFi), Live Update…) rather than the whole brand.

  • Routers (RT, GT, ZenWiFi)2 vulnerabilities, Home routers and IoT
  • Live Update1 vulnerability, Hardware and firmware

Name used by CISA: ASUS. Product families: indicative classification by this site.

Patch first

In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this ASUS list.

  1. Rank 1

    ASUS Live UpdateCVE-2025-59374

    ASUS Live Update Embedded Malicious Code Vulnerability

    CVSS severity 9.8critical

    Added Dec 17, 2025

  2. Rank 2

    ASUS Routers (RT, GT, ZenWiFi)CVE-2021-32030

    ASUS Routers Improper Authentication Vulnerability

    CVE from 2021, added in 2025

    CVSS severity 9.8critical

    Added Jun 2, 2025

  3. Rank 3

    ASUS Routers (RT, GT, ZenWiFi)CVE-2023-39780

    ASUS RT-AX55 Routers OS Command Injection Vulnerability

    CVE from 2023, added in 2025

    CVSS severity 8.8high

    Added Jun 2, 2025

Follow and verify

Indicative classification, based on the vendor and product names given by CISA. How products are classified.