Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Wcr\-1166ds_firmware
(Buffalo)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-04-15 | CVE-2024-26023 | OS command injection vulnerability in BUFFALO wireless LAN routers allows a logged-in user to execute arbitrary OS commands. | Wcr\-1166ds_firmware, Wsr\-1166dhp2_firmware, Wsr\-1166dhp_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp_firmware, Wsr\-2533dhpl_firmware, Wsr\-A2533dhp2_firmware | N/A | ||
2022-12-19 | CVE-2022-43443 | OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page. | Wcr\-1166ds_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp3_firmware, Wsr\-2533dhp_firmware, Wsr\-2533dhpl2_firmware, Wsr\-2533dhpl_firmware, Wsr\-2533dhpls_firmware, Wsr\-3200ax4b_firmware, Wsr\-3200ax4s_firmware, Wsr\-A2533dhp2_firmware, Wsr\-A2533dhp3_firmware | 8.8 | ||
2022-12-19 | CVE-2022-43486 | Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices. | Wcr\-1166ds_firmware, Wex\-1800ax4_firmware, Wex\-1800ax4ea_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp3_firmware, Wsr\-2533dhp_firmware, Wsr\-2533dhpl2_firmware, Wsr\-2533dhpl_firmware, Wsr\-2533dhpls_firmware, Wsr\-3200ax4b_firmware, Wsr\-3200ax4s_firmware, Wsr\-A2533dhp2_firmware, Wsr\-A2533dhp3_firmware | 6.8 | ||
2017-08-18 | CVE-2017-10811 | Buffalo WCR-1166DS devices with firmware 1.30 and earlier allow an attacker to execute arbitrary OS commands via unspecified vectors. | Wcr\-1166ds_firmware | 6.8 |