Download Master Asus Download Master

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Asus Download Master.

By the Year

In 2026 there have been 0 vulnerabilities in Asus Download Master. Download Master did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 5 6.24

It may take a day or so for new Download Master vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Asus Download Master Security Vulnerabilities

ASUS Download Master Buffer Overflow Enables Remote Code Exec
CVE-2024-31163 7.2 - High - June 14, 2024

ASUS Download Master has a buffer overflow vulnerability. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.

Stack Overflow

CVE-2024-31162: ASUS DM Unauth Remote Cmd Exec via Unfiltered Param
CVE-2024-31162 7.2 - High - June 14, 2024

The specific function parameter of ASUS Download Master does not properly filter user input. An unauthenticated remote attacker with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the device.

ASUS Download Master UPLOAD flaw: Arbitrary File Upload with Admin Privileges
CVE-2024-31161 7.2 - High - June 14, 2024

The upload functionality of ASUS Download Master does not properly filter user input. Remote attackers with administrative privilege can exploit this vulnerability to upload any file to any location. They may even upload malicious web page files to the website directory, allowing arbitrary system commands to be executed upon browsing the webpage.

Unrestricted File Upload

ASUS DM Stored XSS via unsanitized param
CVE-2024-31160 4.8 - Medium - June 14, 2024

The parameter used in the certain page of ASUS Download Master is not properly filtered for user input. A remote attacker with administrative privilege can insert JavaScript code to the parameter for Stored Cross-site scripting attacks.

XSS

ASUS Download Master XSS via unsanitized parameter
CVE-2024-31159 4.8 - Medium - June 14, 2024

The parameter used in the certain page of ASUS Download Master is not properly filtered for user input. A remote attacker with administrative privilege can insert JavaScript code to the parameter for Reflected Cross-site scripting attacks.

XSS

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Asus Download Master or by Asus? Click the Watch button to subscribe.

Asus
Vendor

subscribe