CVE-2024-26023
- EPSS 0.16%
- Veröffentlicht 15.04.2024 11:15:08
- Zuletzt bearbeitet 30.06.2025 13:12:40
OS command injection vulnerability in BUFFALO wireless LAN routers allows a logged-in user to execute arbitrary OS commands.
CVE-2024-23486
- EPSS 0.63%
- Veröffentlicht 15.04.2024 11:15:07
- Zuletzt bearbeitet 30.06.2025 12:57:00
Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker with access to the product's login page may obtain configured credentials.
CVE-2022-43443
- EPSS 0.99%
- Veröffentlicht 19.12.2022 03:15:10
- Zuletzt bearbeitet 17.04.2025 15:15:48
OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page.
CVE-2022-43486
- EPSS 0.26%
- Veröffentlicht 19.12.2022 03:15:10
- Zuletzt bearbeitet 17.04.2025 15:15:48
Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices.