CVE-2026-93495
Received Received - Intake

Improper Initialization in ASUS Motherboard Firmware

Vulnerability report for CVE-2026-93495, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-01

Last updated on: 2026-10-01

Assigner: ASUS

Description

Improper initialization in an ASUS certain motherboard allows an physically proximate user to read or write arbitrary memory by inserting a specially crafted device.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-01
Last Modified
2026-10-01
Generated
2026-10-01
AI Q&A
2026-10-01
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
asus motherboard *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-665 The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves improper initialization in certain ASUS motherboards. A physically proximate attacker can exploit it by inserting a specially crafted device to read or write arbitrary memory on the system.

Detection Guidance

Detection requires physical inspection of ASUS motherboards for unauthorized devices. Check for unusual hardware connected to the system. No specific network commands are applicable as this is a physical access vulnerability.

Impact Analysis

An attacker with physical access could potentially access sensitive data stored in memory or alter system behavior by modifying memory contents. This could lead to unauthorized data exposure or system compromise.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, potentially violating GDPR (data protection) and HIPAA (health information privacy) requirements. Organizations may face compliance penalties if such breaches occur due to inadequate security measures.

Mitigation Strategies

Restrict physical access to systems with ASUS motherboards. Inspect all connected hardware for tampering. Update BIOS/UEFI firmware if patches are available from ASUS. Monitor for unusual system behavior.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-93495. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart