Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Wsr\-2533dhpl2_firmware
(Buffalo)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 3 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2022-12-19 | CVE-2022-43443 | OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page. | Wcr\-1166ds_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp3_firmware, Wsr\-2533dhp_firmware, Wsr\-2533dhpl2_firmware, Wsr\-2533dhpl_firmware, Wsr\-2533dhpls_firmware, Wsr\-3200ax4b_firmware, Wsr\-3200ax4s_firmware, Wsr\-A2533dhp2_firmware, Wsr\-A2533dhp3_firmware | 8.8 | ||
2022-12-19 | CVE-2022-43466 | OS command injection vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command if a specially crafted request is sent to a specific CGI program. | Wex\-1800ax4_firmware, Wex\-1800ax4ea_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp3_firmware, Wsr\-2533dhpl2_firmware, Wsr\-2533dhpls_firmware, Wsr\-3200ax4b_firmware, Wsr\-3200ax4s_firmware, Wsr\-A2533dhp2_firmware, Wsr\-A2533dhp3_firmware | 6.8 | ||
2022-12-19 | CVE-2022-43486 | Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices. | Wcr\-1166ds_firmware, Wex\-1800ax4_firmware, Wex\-1800ax4ea_firmware, Wsr\-2533dhp2_firmware, Wsr\-2533dhp3_firmware, Wsr\-2533dhp_firmware, Wsr\-2533dhpl2_firmware, Wsr\-2533dhpl_firmware, Wsr\-2533dhpls_firmware, Wsr\-3200ax4b_firmware, Wsr\-3200ax4s_firmware, Wsr\-A2533dhp2_firmware, Wsr\-A2533dhp3_firmware | 6.8 |