logo

ASUS warns of critical auth bypass flaw in DSL series routers

ID: 934e30d8-b4a4-565b-927d-33009772811d

STIX ID: report--934e30d8-b4a4-565b-927d-33009772811d

Feed Name: Bleeping Computer

Threat Score
65/100

Date Published: 2025-11-14

Date Updated: 2026-07-17

Author: Sergiu Gatlan

...
...

ASUS has released firmware 1.1.2.3_1010 to fix a critical authentication-bypass vulnerability (CVE-2025-59367) affecting several DSL router models (DSL-AC51, DSL-N16, DSL-AC750); attackers can remotely log into unpatched devices without authentication. ASUS urges immediate updating or mitigations (disable WAN remote access, port forwarding, DDNS, VPN server, DMZ, FTP, etc.); while no active exploitation is reported, prior exploitation of ASUS router flaws by groups building botnets increases the urgency to patch.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.