CVE-2025-12003: ASUS Router
High severity, CVSS 8.2. EPSS: 0.6% chance of exploitation in the next 30 days.
A path traversal vulnerability has been identified in WebDAV, which may allow unauthenticated remote attackers to impact the integrity of the device. Refer to the ' Security Update for ASUS Router Firmware' section on the ASUS Security Advisory for more information.
Affected products
- ASUS Router: version 3.0.0.4_386 only; version 3.0.0.4_388 only; version 3.0.0.6_102 only
Published 2025-11-25. Last modified 2026-06-17.