CVE-2023-26911: ASUS Armoury Crate

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

ASUS SetupAsusServices v1.0.5.1 in Asus Armoury Crate v5.3.4.0 contains an unquoted service path vulnerability which allows local users to launch processes with elevated privileges.

Affected products

  • ASUS Armoury Crate: up to and including 5.3.4.0
  • ASUS Setupasusservices: up to and including 1.0.5.1

Published 2023-07-26. Last modified 2026-07-09.