CVE-2020-15009: ASUS SCREENPAD2 Upgrade Tool

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

AsusScreenXpertServicec.exe and ScreenXpertUpgradeServiceManager.exe in ScreenPad2_Upgrade_Tool.msi V1.0.3 for ASUS PCs with ScreenPad 1.0 (UX450FDX, UX550GDX and UX550GEX) could lead to unsigned code execution with no additional restrictions when a user puts an application at a particular path with a particular file name.

Affected products

  • ASUS SCREENPAD2 Upgrade Tool: version 1.0.3 only

Published 2020-07-20. Last modified 2026-06-17.