CVE-2025-2492 - Overview, Insights & Trends

CVE-2025-2492

Published Apr 18, 2025

Last updated 2 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-2492 is a vulnerability found in ASUS routers, specifically affecting those with the AiCloud feature enabled. It stems from improper authentication controls within the router's firmware. This flaw allows attackers to bypass security checks by sending crafted requests to the router. By doing so, they can potentially execute unauthorized functions remotely without requiring any authentication.

Description
An improper authentication control vulnerability exists in AiCloud. This vulnerability can be triggered by a crafted request, potentially leading to unauthorized execution of functions. Refer to the 'ASUS Router AiCloud vulnerability' section on the ASUS Security Advisory for more information.
Source
54bf65a7-a193-42d2-b1ba-8e150d3c35e1
NVD status
Awaiting Analysis

Risk scores

CVSS 4.0

Type
Secondary
Base score
9.2
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
CRITICAL

Weaknesses

54bf65a7-a193-42d2-b1ba-8e150d3c35e1
CWE-288

Social media

Hype score
Not currently trending
  1. ASUS の AiCloud 対応ルーターの脆弱性 CVE-2025-2492 が FIX:細工されたリクエストの送信で認証バイパス https://t.co/Gf5b9REdYj ASUS の AiCloud 対応ルーターの脆弱性が FIX

    @iototsecnews

    5 May 2025

    108 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVSS 9.2 Alert: ASUS router flaw (CVE-2025-2492) is a wide-open door for remote attacks. If you use AiCloud, patch NOW. Consumer hardware is the new enterprise target. #Vulnerability #InfosecAlert

    @cybertalentnews

    24 Apr 2025

    1 Impression

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. ASUS製ルーターに重大な認証回避の脆弱性(CVE-2025-2492) - ロケットボーイズ https://t.co/WKYae0C5S7 #izumino_trend

    @sec_trend

    23 Apr 2025

    69 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. ASUS製ルーターに重大な認証回避の脆弱性(CVE-2025-2492) #セキュリティ対策Lab #セキュリティ #Security https://t.co/opz6PWnsZ8

    @securityLab_jp

    23 Apr 2025

    46 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Otkrivena kritična ranjivost u ASUS ruterima (CVE-2025-2492) https://t.co/dZGpJ2yMQh #asusrouterexploit #criticalflawalert #cve20252492 #devicevulnerability #networksecurityrisk #remoteattackwarning #routersecurityrisk #unpatchedrouters

    @SajberInfoBlog

    22 Apr 2025

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. Actively exploited CVE : CVE-2025-2492

    @transilienceai

    22 Apr 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  7. ASUS、AiCloudルーターの脆弱性に対するパッチをユーザーに即座に適用するよう促す(CVE-2025-2492) https://t.co/3y94PK1api #Security #セキュリティ #ニュース

    @SecureShield_

    22 Apr 2025

    44 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🚨 Critical alert for ASUS router users:  CVE-2025-2492 is a newly disclosed remote code execution vulnerability affecting ASUS routers with AiCloud enabled.  It has a CVSS score of 9.2 — and attackers only need a crafted request to exploit it. 👇 https://t.co/dL34HywRee

    @efani

    21 Apr 2025

    430 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  9. 📡 ASUS Confirms Critical Flaw in AiCloud Routers CVE-2025-2492 (CVSS 9.2) allows remote attacks via crafted requests. Affects multiple firmware versions—patch ASAP or disable risky services. https://t.co/UtKqM9AD4G #CyberSecurity #IoT

    @dCypherIO

    21 Apr 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. ASUS製ルーターのクラウド機能「AiCloud」に重大な脆弱性(CVE-2025-2492)が発見された。CVSS v4スコアは9.2と極めて深刻であり、認証なしに遠隔から任意コードを実行される恐れがある。

    @yousukezan

    21 Apr 2025

    731 Impressions

    0 Retweets

    2 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  11. ASUS has disclosed a critical security flaw impacting routers with AiCloud enabled that could permit remote attackers to perform unauthorized execution of functions on susceptible devices. CVE-2025-2492 has a CVSS score of 9.2 out of a maximum of 10.0. https://t.co/vIVtJwTbOr htt

    @riskigy

    21 Apr 2025

    44 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  12. ASUS has issued a warning regarding a critical authentication bypass vulnerability (CVE-2025-2492) in routers with AiCloud enabled, rated 9.2 on the CVSS v4 scale. https://t.co/WooHZPDNsP

    @securityRSS

    21 Apr 2025

    56 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  13. ⚡️The vulnerability details are now available: https://t.co/iTTrDPvUjP 🚨🚨CVE-2025-2492 (CVSS 9.2): ASUS Confirms Critical Flaw in AiCloud Routers Hackers can bypass authentication with a crafted request, potentially hijacking your router! ZoomEye Dork👉app="ASUS AiCloud" htt

    @zoomeye_team

    21 Apr 2025

    452 Impressions

    2 Retweets

    5 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  14. ASUS has revealed a critical security vulnerability affecting routers with AiCloud enabled. This flaw could allow remote attackers to execute unauthorized functions on the devices. Identified as CVE-2025-2492, the issue carries a high severity rating with a CVSS score of 9.2 out

    @GuardingPearSof

    21 Apr 2025

    63 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  15. Critical ASUS Router Vulnerability (CVE-2025-2492) Requires Immediate Update ASUS warns of a critical AiCloud vulnerability (CVE-2025-2492) in its routers allowing unauthorized remote access. Update your firmware now! https://t.co/12XLYApYQr

    @the_yellow_fall

    21 Apr 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  16. 【リンク集:4月19日〜21日のセキュリティ関連ニュース/記事】 <脆弱性> ・AiCloudを搭載したルーターに認証バイパスの重大な脆弱性が存在 ASUSが注意喚起(CVE-2025-2492) https://t.co/2dHzcNOa3R ・GitHub Enterprise

    @MachinaRecord

    21 Apr 2025

    156 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  17. CVE-2025-2492: Critical ASUS Router Vulnerability Requires Immediate Firmware Update https://t.co/4Mb95QtA7Z

    @Dinosn

    21 Apr 2025

    4240 Impressions

    19 Retweets

    50 Likes

    16 Bookmarks

    1 Reply

    0 Quotes

  18. ASUS disclosed a critical security flaw in routers with AiCloud enabled, allowing remote attackers to execute functions on vulnerable devices. CVE-2025-2492 is addressed with firmware updates for specific branches. Users should update their routers to the latest version.

    @meet_cipher

    20 Apr 2025

    39 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  19. ASUS routers vulnerable: CVE-2025-2492 exploit alert Major security flaw found in ASUS routers with AiCloud. High-severity vulnerability CVE-2025-2492 allows unauthorized access. Users at risk need immediate patch updates.

    @Ctrl_alt_wtf

    20 Apr 2025

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  20. ASUS製ルーター『AiCloud』機能に認証の脆弱性『CVE-2025-2492』。アップデートを https://t.co/kPAHYBnnV9 #izumino_trend

    @sec_trend

    19 Apr 2025

    30 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  21. Achtung #ASUS-Router-Besitzer: Kritische Sicherheitslücke in AiCloud entdeckt. CVE-2025-2492 ermöglicht unbefugte Funktionsausführung. CVSS-Score: 9,2/10. Schnelles Update dringend empfohlen. #Cybersecurity https://t.co/xWMPbfFSv6

    @WinFuture

    19 Apr 2025

    44 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  22. 📌 أعلنت شركة ASUS عن ثغرة أمنية خطيرة في أجهزة التوجيه المزودة بتقنية AiCloud، مما يتيح للمهاجمين تنفيذ وظائف غير مصرح بها. الثغرة، المعروفة برقم CVE-2025-2492، تمتلك درجة CVSS تبلغ 9.2 من 10. يُنصح المستخدمون بتحديث البرنامج الثابت لحماية أجهزتهم. #الامن_السيبراني https://t.co

    @Cybercachear

    19 Apr 2025

    39 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  23. 🚨 Critical ASUS Router Flaw Exposed 9.2 CVSS | Remote Hijack Risk A new bug—CVE-2025-2492—lets attackers remotely execute functions on ASUS routers with AiCloud enabled. 🔗 Details: https://t.co/NWnAOXT2Pj

    @TheHackersNews

    19 Apr 2025

    13139 Impressions

    44 Retweets

    87 Likes

    21 Bookmarks

    1 Reply

    2 Quotes

  24. うむ🫤  お客さんに前導入したヤツ大丈夫か確認せねば… ASUS製ルーター『AiCloud』機能に認証の脆弱性『CVE-2025-2492』。アップデートを | ニッチなPCゲーマーの環境構築Z https://t.co/V5kavUbdtV

    @RB7010

    18 Apr 2025

    18 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  25. 🚨 ASUS router users, heads up! A critical auth bypass vulnerability (CVE-2025-2492) in AiCloud could allow remote code execution. Update your firmware ASAP or disable AiCloud if EOL. Stay safe! 🛡️ #Cybersecurity #ASUS #RouterSecurity https://t.co/A1oGGKBSi0

    @fernandokarl

    18 Apr 2025

    27 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  26. ASUS warns of a critical authentication bypass vulnerability (CVE-2025-2492) in AiCloud routers, enabling unauthorized remote access. Users must update firmware and secure passwords immediately for protection. #Security https://t.co/kjoyJrhF1J

    @Strivehawk

    18 Apr 2025

    28 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  27. 🚨 CVE-2025-2492 ⚠️🔴 CRITICAL (9.2) 🏢 ASUS - Router 🏗️ 3.0.0.4_382 series 🔗 https://t.co/4NXfmoPzQe #CyberCron #VulnAlert #InfoSec https://t.co/SK6ocjBUbP

    @cybercronai

    18 Apr 2025

    13 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  28. 🚨ASUS AiCloud Vulnerability (CVE-2025-2492) Enables Remote Function Execution via Authentication Bypass CVSS Score: 9.2 https://t.co/0YofUq1hWX

    @DarkWebInformer

    18 Apr 2025

    210 Impressions

    1 Retweet

    2 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.