THREAT OPS › Threat News › [NVD] CVE-2026-1880 — An Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub update process allows privilege escalation due to improper protection of required execution resources during the validation phase, permitting a local user to make unprivileged modificatio
[NVD] CVE-2026-1880 — An Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub update process allows privilege escalation due to improper protection of required execution resources during the validation phase, permitting a local user to make unprivileged modificatio
CVE-2026-1880 CVSS: None Published: 2026-04-16T03:16:25.857
An Incorrect Permission Assignment for Critical Resource vulnerability in the ASUS DriverHub update process allows privilege escalation due to improper protection of required execution resources during the validation phase, permitting a local user to make unprivileged modifications. This allows the altered resource to pass system checks
MITRE ATT&CK techniques
- System ChecksT1497.001
Indicators of compromise
- CVE-2026-1880cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-1880