CVE-2020-29656: ASUS Rt-AC88U Firmware
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloadmaster/dm_apply.cgi?action_mode=initial&download_type=General&special_cgi=get_language makes it possible to reach "unknown functionality" in a "known to be easy" manner via an unspecified "public exploit."
Affected products
- ASUS Rt-AC88U Firmware: before 3.1.0.108 (fixed in 3.1.0.108)
Published 2020-12-09. Last modified 2026-06-17.