CVE-2022-43486
MEDIUM
6,8
Source: [email protected]
Attack Vector: adjacent_network
Attack Complexity: low
Privileges Required: high
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
Description
AI Translation Available
Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0026
Percentile
0,5th
Updated
EPSS Score Trend (Last 90 Days)
94
Improper Control of Generation of Code ('Code Injection')
DraftCommon Consequences
Security Scopes Affected:
Access Control
Integrity
Confidentiality
Availability
Non-Repudiation
Potential Impacts:
Bypass Protection Mechanism
Gain Privileges Or Assume Identity
Execute Unauthorized Code Or Commands
Hide Activities
Applicable Platforms
Languages:
Interpreted
Technologies:
AI/ML
Operating System
Wsr-3200Ax4S Firmware by Buffalo
Version Range Affected
To
1.26
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-3200ax4s_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhpl2 Firmware by Buffalo
Version Range Affected
To
1.03
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhpl2_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhp2 Firmware by Buffalo
Version Range Affected
To
1.22
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhp2_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhpl Firmware by Buffalo
Version Range Affected
To
1.08
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhpl_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-3200Ax4B Firmware by Buffalo
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-3200ax4b_firmware:1.25:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wex-1800Ax4 Firmware by Buffalo
Version Range Affected
To
1.13
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wex-1800ax4_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhp Firmware by Buffalo
Version Range Affected
To
1.08
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhp_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhpls Firmware by Buffalo
Version Range Affected
To
1.07
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhpls_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-A2533Dhp3 Firmware by Buffalo
Version Range Affected
To
1.26
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-a2533dhp3_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-A2533Dhp2 Firmware by Buffalo
Version Range Affected
To
1.22
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-a2533dhp2_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wex-1800Ax4Ea Firmware by Buffalo
Version Range Affected
To
1.13
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wex-1800ax4ea_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wsr-2533Dhp3 Firmware by Buffalo
Version Range Affected
To
1.26
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wsr-2533dhp3_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Operating System
Wcr-1166Ds Firmware by Buffalo
Version Range Affected
To
1.34
(inclusive)
CPE Identifier
View Detailed Analysis
cpe:2.3:o:buffalo:wcr-1166ds_firmware:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://jvn.jp/en/vu/JVNVU97099584/
https://www.buffalo.jp/news/detail/20240131-01.html
https://jvn.jp/en/vu/JVNVU97099584/
https://www.buffalo.jp/news/detail/20240131-01.html