› UKTH forums › 🛜 Wireless Routers & Modems › ASUS & Wireless › Another ASUS AiCloud Security Vulnerability Discovered — November 2025 On November 25, 2025, ASUS issued a critical advisory revealing yet another major security flaw in its AiCloud service. The vulnerability, tracked as CVE‑2025‑59366, carries a CVSS score of 9.2...
- This topic has 2 replies, 1 voice, and was last updated 2 hours, 37 minutes ago by
UK Sentinel.
- AuthorPosts
- November 27, 2025 at 8:10 pm #40340
On November 25, 2025, ASUS issued a critical advisory revealing yet another major security flaw in its AiCloud service. The vulnerability, tracked as CVE‑2025‑59366, carries a CVSS score of 9.2 and allows attackers to bypass authentication, execute arbitrary commands, and potentially take full control of affected routers.
Details of the Vulnerability
- CVE‑2025‑59366 (Critical): Exploits Samba functionality in AiCloud through a combination of path traversal and OS command injection.
- Severity: Rated 9.2 (Critical) due to low complexity and no user interaction required.
- Affected Devices: ASUS has not listed specific models, but all routers with AiCloud enabled are considered at risk.
- Additional flaws patched: Eight other vulnerabilities were addressed in the same advisory, including three high‑severity issues (CVE‑2025‑59370, CVE‑2025‑59371, CVE‑2025‑12003).
In a completely sane world, madness is the only freedom (J.G.Ballard).
You need to login in order to vote
November 27, 2025 at 8:14 pm #40341ASUS have already started released fixes to address multiple vulnerabilities, including a critical authentication bypass flaw in routers with AiCloud enabled
In a completely sane world, madness is the only freedom (J.G.Ballard).
You need to login in order to vote
November 27, 2025 at 8:18 pm #40342Rumour has it that RMerlin is considering not including AiCloud in his future AsusWRT-Merlin builds …..
In a completely sane world, madness is the only freedom (J.G.Ballard).
You need to login in order to vote
- AuthorPosts
- You must be logged in to reply to this topic.
