CVE-2026-7480EPSS p1.7%

CVE-2026-7480CVE-2026-7480

Description

An Incorrect Permission Assignment for Critical Resource vulnerability in ASUS System Control Interface allows a local user to elevate privileges to SYSTEM and execute arbitrary code via a crafted RPC call that bypass the validation mechanism. Refer to the 'Security Update for ASUS System Control Interface' section on the ASUS Security Advisory for more information.

Scoring

EPSS0.12% probability of exploitation · percentile 1.7% · 2026-10-05T12:00:23Z
Last modified2026-07-21
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.