github.com
https://github.com/DriverHunter/Win-Driver-EXP/tree/main/CVE-2024-33222 CVE-2024-33222
HIGH
Record summary
CVE-2024-33222 has a selected CVSS score of 8.4 (high).
Description
An issue in the component ATSZIO64.sys of ASUSTeK Computer Inc ASUS ATSZIO Driver v0.2.1.7 allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 12, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
atszio_driverBrowse asus / atszio_driverDefault status: unknown | CVE List | 0.2.1.7 | affected |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2024-33222