CVE-2026-7480EPSS p1.7%
CVE-2026-7480CVE-2026-7480
Description
An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interface allows a local user to elevate privileges to SYSTEM and execute arbitrary code via a crafted RPC call that bypass the validation mechanism.
Refer to the 'Security Update for ASUS System Control Interface' section on the ASUS Security Advisory for more information.
Scoring
| EPSS | 0.12% probability of exploitation · percentile 1.7% · 2026-10-05T12:00:23Z |
| Last modified | 2026-07-21 |