CVE-2025-9968 HIGH

CVE-2025-9968

Vendor Asus
Product Armoury Crate
Weakness CWE-59
Published October 13, 2025
Last update February 26, 2026

CVSS base score

8.5/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

What the vulnerability does

01Description

A link following vulnerability exists in the UnifyScanner component of Armoury Crate. This vulnerability may be triggered by creating a specially crafted junction, potentially leading to local privilege escalation. For more information, please refer to section 'Security Update for Armoury Crate App' in the ASUS Security Advisory.

Key dates

02Disclosure timeline

October 13, 2025 CVE published
February 26, 2026 Record updated