Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: ASUS Routers Vulnerable to Remote Command Execution
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
Cybersecurity

ASUS Routers Vulnerable to Remote Command Execution

Highlights

  • Critical vulnerability found in several ASUS router models.

  • CVE-2024-3912 allows unauthenticated remote command execution.

  • ASUS has released firmware updates to address the issue.

Kaan Demirel
Last updated: 17 June, 2024 - 9:46 am 9:46 am
Kaan Demirel 11 months ago
Share
SHARE

In a recent discovery, several ASUS routers have been identified with a critical vulnerability that exposes them to unauthenticated remote command execution. This flaw, which could potentially allow attackers to take control of the affected devices, has placed a significant number of users at risk. As network security remains a critical concern, users must ensure their devices are up to date to prevent malicious exploitation.

Contents
Impact and SeverityRecommendations for Users

The vulnerability, labeled CVE-2024-3912, has been given a CVSS score of 9.8, signifying its severity. The flaw arises from an arbitrary firmware upload vulnerability present in multiple ASUS router models. Discovered by Carlos Köpke of PLASMALABS, the issue allows attackers to execute arbitrary commands on the compromised routers remotely without requiring authentication.

Impact and Severity

The affected ASUS router models include DSL-N17U, DSL-N55U_C1, DSL-N55U_D1, DSL-N66U, DSL-N14U, DSL-N14U_B1, DSL-N12U_C1, DSL-N12U_D1, DSL-N16, DSL-AC51, DSL-AC750, DSL-AC52U, DSL-AC55U, and DSL-AC56U. Given the widespread usage of these models, the impact of this vulnerability is substantial, prompting immediate action from users and administrators.

Recommendations for Users

ASUS has addressed this critical flaw by releasing firmware updates aimed at mitigating the risk. Users of the affected models are strongly urged to update their router firmware to the latest versions: 1.1.2.3_792 or later for DSL-N17U, DSL-N55U_C1, DSL-N55U_D1, and DSL-N66U; 1.1.2.3_807 or later for DSL-N12U_C1, DSL-N12U_D1, DSL-N14U, and DSL-N14U_B1; and 1.1.2.3_999 or later for DSL-N16, DSL-AC51, DSL-AC750, DSL-AC52U, DSL-AC55U, and DSL-AC56U.

Older models such as DSL-N10_C1, DSL-N10_D1, DSL-N10P_C1, DSL-N12E_C1, DSL-N16P, DSL-N16U, DSL-AC52, and DSL-AC55, which are no longer maintained, should be replaced. If replacement is not immediately possible, disabling features like remote access, virtual server, DDNS, VPN server, DMZ, and port trigger is recommended to mitigate potential exploitation.

ASUS routers, widely used in various settings, offer functionalities such as high-speed internet connectivity and secure networking solutions. Launched years ago, these models come equipped with features catering to diverse user needs, from home to small office environments. However, the recent vulnerability underscores the need for regular firmware updates and timely replacements of outdated devices to ensure security.

Previously, ASUS routers have encountered security issues, prompting firmware updates to patch vulnerabilities. Comparatively, the CVE-2024-3912 vulnerability’s high severity score necessitates more urgent and widespread action. While historical vulnerabilities have varied in impact, the current flaw’s potential for remote exploitation without authentication poses a greater threat.

Recent news on router vulnerabilities highlights a growing trend of exploitation attempts targeting network devices. Unlike past vulnerabilities that required user action for exploitation, CVE-2024-3912’s remote command execution potential makes it particularly dangerous. This shift emphasizes the need for proactive security measures and regular updates from manufacturers like ASUS.

The discovery of CVE-2024-3912 in ASUS routers highlights the critical importance of maintaining up-to-date firmware and replacing end-of-life devices. Users must act promptly to apply necessary updates or consider replacing vulnerable routers. Such actions are essential to safeguarding networks against potential threats.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

Cyberattack Forces PowerSchool to Face Extortion Scandal

CrowdStrike Faces Workforce Reduction Amid Financial Shifts

Authorities Seize DDoS Platforms in Multi-National Operation

Trump Urges Colorado to Release Jailed Clerk Over Election Breach

Google Targets Vulnerabilities in May Security Update

Share This Article
Facebook Twitter Copy Link Print
Kaan Demirel
By Kaan Demirel
Kaan Demirel is a 28-year-old gaming enthusiast residing in Ankara. After graduating from the Statistics department of METU, he completed his master's degree in computer science. Kaan has a particular interest in strategy and simulation games and spends his free time playing competitive games and continuously learning new things about technology and game development. He is also interested in electric vehicles and cyber security. He works as a content editor at NewsLinker, where he leverages his passion for technology and gaming.
Previous Article Innovative Honeycomb-Structure Wearable Pulse Sensor for Cardiovascular Monitoring and Biometric Authentication
Next Article Apple Adds New Features to iOS Calculator

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

Mazda Partners with Tesla for Charging Standard Shift
Electric Vehicle
Trump Alters AI Chip Export Strategy, Reversing Biden Controls
AI
Solve Wordle’s Daily Puzzle with These Expert Tips
Gaming
US Automakers Boost Robot Deployment in 2024
Robotics
Uber Expands Autonomy Partnership with $100 Million Investment in WeRide
Robotics
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?