CVE-2026-19397EPSS p9.0%
CVE-2026-19397CVE-2026-19397
Description
Missing authentication for a critical function in ASUS Control Center Express Agent allows an unauthenticated nearby user to control the host via a direct connection to the agent when the host has an active login session.
Refer to the '
Security Update for ASUS Control Center Express Agent ' section on the ASUS Security Advisory for more information.
Scoring
| EPSS | 0.20% probability of exploitation · percentile 9.0% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-28 |