← Back to CVE List
CVE-2026-16528NVD
Vulnerability Summary
Insertion of Sensitive Information into Log File in certain ASUS router models allows a remote authenticated attacker to obtain DDNS credentials from the system log, potentially enabling modification of DNS settings.Refer to the ' Security Update for ASUS Router Firmware ' section on the ASUS Security Advisory for more information.
CVSS v4.0 Base Metrics — Score 8.4 (HIGH)
Attack VectorAdjacent
Attack ComplexityLow
Attack RequirementsNone
Privileges RequiredHigh
User InteractionNone
Confidentiality (Vulnerable System)High
Integrity (Vulnerable System)High
Availability (Vulnerable System)Low
Confidentiality (Subsequent System)None
Integrity (Subsequent System)None
Availability (Subsequent System)None
Affected & Patched Versions
- ASUS Router >= 3.0.0.4.386 series
- ASUS Router >= 3.0.0.4.388 series
- ASUS Router >= 3.0.0.6.102 series
Not provided by cveorg for this CVE.