ASUS Router Product Security Update Advisory

Overview

 

ASUS has announced an update to address vulnerabilities in their router products. Users of the affected versions are advised to update to the latest version.

 

Affected Products

 

ZenWiFi XT8 version 3.0.0.4.388_24609 or below
ZenWiFi XT8 version V2 3.0.0.4.388_24609 or below
RT-AX88U version 3.0.0.4.388_24198 or below
RT-AX58U version 3.0.0.4.388_23925 or below
RT-AX57 version 3.0.0.4.386_52294 or below
RT-AC86U version 3.0.0.4.386_51915 or below
RT-AC68U version 3.0.0.4.386_51668 or below

 

Resolved Vulnerabilities

 

Authentication bypass vulnerability in certain ASUS router models (CVE-2024-3080)

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

ZenWiFi XT8 to version 3.0.0.4.388_24621 or later
ZenWiFi XT8 V2 to version 3.0.0.4.388_24621 or later
RT-AX88U to version 3.0.0.4.388_24209 or later
RT-AX58U to version 3.0.0.4.388_24762 or later
RT-AX57 to version 3.0.0.4.386_52303 or later
RT-AC86U to version 3.0.0.4.386_51925 or later
RT-AC68U to version 3.0.0.4.386_51685 or later

 

Referenced Sites

 

[1] CVE-2024-3080 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-3080

[2] ASUS Router – Improper Authentication

https://www.twcert.org.tw/en/cp-139-7860-760b1-2.html