CVE-2026-14157EPSS p53.8%

CVE-2026-14157CVE-2026-14157

Description

Use of an Externally Controlled Format String in the ASUS Router modules allow a remote authenticated user to execute arbitrary commands via a crafted file uploaded through the web management interface.

Scoring

EPSS0.76% probability of exploitation · percentile 53.8% · 2026-10-05T12:00:23Z
Last modified2026-10-02
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.