AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2026-19397.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSAwaiting NVD dataModified Sep 10, 2026

Disclosure summary

This vulnerability allows remote attackers to execute arbitrary code on affected installations of ASUS Control Center Express Agent. Authentication is not required to exploit this

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

ZDI: Published Advisories · RSS-a74c7cd29bd9f6cf0fbb17aec55f01c3bdd

Open original source · Updated Sep 10, 2026

ZDI-26-657: ASUS Control Center Express Agent Missing Authentication Remote Code Execution Vulnerability

CVE mention in publisher metadata; check the original affected versions.

Original records & references

PUBLISHED 2026-09-10T01:00:00-04:00
MODIFIED 2026-09-10T01:00:00-04:00
INGESTED 2026-10-08T12:25:19-04:00