CVE-2026-93495

Executive Summary

Improper initialization in certain ASUS motherboard firmware permits a physically proximate attacker to read or write arbitrary memory by inserting a specially crafted device. The flaw enables memory corruption without requiring network access and is not currently listed in the CISA KEV.


Authoritative CVE Metadata - CVSS Base Score: Unknown (Unknown) - Published: 2026-10-01T02:16:54.150 - Last Modified: 2026-10-05T02:16:54.370

Original Description: Improper initialization in an ASUS certain motherboard allows an physically proximate user to read or write arbitrary memory by inserting a specially crafted device. Refer to the '  Security Update for Multiple ASUS Motherboards  ' section on the ASUS Security Advisory for more information.

"I'm a great believer in luck and I find the harder I work, the more I have of it."

— Thomas Jefferson
Source: NVD