CVE-2026-13585EPSS p5.0%
CVE-2026-13585CVE-2026-13585
Description
Allocation of Resources Without Limits and Throttling and Sensitive Information in Resource Not Removed Before Reuse in the ASUS System Control Interface driver and ASUS Business Manager allow a local administrator to disclose sensitive information via crafted IOCTL requests, which, in severe cases, may lead to a Denial of Service (DoS) on the system.
Refer to the '
Security Update for ASUS System Control Interface ' section on the ASUS Security Advisory for more information.
Scoring
| EPSS | 0.16% probability of exploitation · percentile 5.0% · 2026-10-06T12:00:23Z |
| Last modified | 2026-09-17 |