CVE-2025-59371: ASUS Router

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

An authentication bypass vulnerability has been identified in the IFTTT integration feature. A remote, authenticated attacker could leverage this vulnerability to potentially gain unauthorized access to the device. This vulnerability does not affect Wi-Fi 7 series models. Refer to the 'Security Update for ASUS Router Firmware' section on the ASUS Security Advisory for more information.

Affected products

  • ASUS Router: version 3.0.0.4_386 only; version 3.0.0.4_388 only; version 3.0.0.6_102 only

Published 2025-11-25. Last modified 2026-06-17.