What is the ASRG CNA?
ASRG is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 71 CVE records since 2023.
How many CVEs has ASRG published?
ASRG has published 71 CVE records, including 53 in the last two years.
What is ASRG's CVE data quality grade?
RadicalNotion.AI grades ASRG's CVE data quality as A, with an overall completeness score of 100%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (100%) information.
What products does ASRG publish CVEs for?
ASRG most frequently publishes CVEs for Volkswagen MIB3 infotainment system MIB3 OI MQB, JuiceBox Pro 3.0 22kW Cellular, waybox pro firmware, waybox pro, EVE OS.
Which vendors does ASRG cover?
ASRG publishes CVEs across 26 distinct vendors, most often Preh Car Connect GmbH (JOYNEXT GmbH), Enel X, enelx, LF-Edge, Zededa, Bosch.
Is ASRG actively publishing CVEs?
ASRG is currently active, based on 53 CVEs in the last two years.
What is the average severity of ASRG's CVEs?
The average CVSS base score across ASRG's scored CVEs is 6.9.
How many critical CVEs has ASRG published?
ASRG has published 11 critical-severity CVEs and 28 high-severity CVEs.
Are any of ASRG's CVEs in CISA's Known Exploited Vulnerabilities catalog?
No. None of ASRG's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
What are the most common weakness types in ASRG's CVEs?
ASRG's CVEs most often map to these CWE weakness types: CWE-121 (Stack-based Buffer Overflow), CWE-754 (Improper Check for Unusual or Exceptional Conditions), CWE-78 (Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')), CWE-200 (Exposure of Sensitive Information to an Unauthorized Actor).
How does ASRG rank among CNAs?
By total CVE volume, ASRG ranks #142 of 370 CNAs, and it reports more complete CVE records than 60% of all CNAs.