CVE-2024-31162: ASUS Download Master

High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.

The specific function parameter of ASUS Download Master does not properly filter user input. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.

Affected products

  • ASUS Download Master: up to and including 3.1.0.113

Published 2024-06-14. Last modified 2026-06-17.