CVE-2025-59367
critical · 9.3An authentication bypass vulnerability has been identified in certain DSL series routers, may allow remote attackers to gain unauthorized access into the affected system. Refer to the 'Security Update for DSL Series Router' section on the ASUS Security Advisory for more information.
9.3
CVSS
0.9%
EPSS (exploit prob.)
57th
EPSS percentile
2025-11-13
Published
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weaknesses
CWE-288CWE-306
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| asus | dsl-ac51_firmware | < 1.1.2.3_1010 |
| asus | dsl-ac51 | all versions |
| asus | dsl-n16_firmware | < 1.1.2.3_1010 |
| asus | dsl-n16 | all versions |
| asus | dsl-ac750_firmware | < 1.1.2.3_1010 |
| asus | dsl-ac750 | all versions |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2025-59367