CVE-2024-55408: ASUS Asci

Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.

An improper access control vulnerability in the AsusSAIO.sys driver may lead to the misuse of software functionality utilizing the driver when crafted IOCTL requests are supplied.

Affected products

  • ASUS Asci: before 1.0.30.0 (fixed in 1.0.30.0); before 3.1.41.0 (fixed in 3.1.41.0)

Published 2025-01-06. Last modified 2026-06-17.