Critical ASUS Router Flaw Lets Remote MITM Attackers Execute Arbitrary Commands
ID: 6e015613-24be-586a-96b0-172e9030a665
STIX ID: report--6e015613-24be-586a-96b0-172e9030a665
Feed Name: GBHackers
Threat Score
ASUS disclosed CVE-2026-13385, a critical firmware vulnerability in multiple router branches that permits MITM attackers to inject arbitrary commands, potentially enabling full device compromise, traffic interception, DNS hijacking, lateral movement, and botnet recruitment; patched firmware has been released and users are urged to update, disable unnecessary remote administration, implement segmentation, and monitor for anomalous DNS or configuration changes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
