VendorsBuffalowsr-2533dhp2_firmwareall versions
Vulnerabilities

Buffalo WSR-2533DHP2 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-23486
Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker with access to the product's login page may obtain configured credentials.
Published 2024-04-15 · Analyzed
9.8EPSS 0.006
CVE-2022-43443
OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page.
Published 2022-12-19 · Modified
8.8EPSS 0.008
CVE-2022-43466
OS command injection vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command if a specially crafted request is sent to a specific CGI program.
Published 2022-12-19 · Modified
6.8EPSS 0.008
CVE-2022-43486
Hidden functionality vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to enable the debug functionalities and execute an arbitrary command on the affected devices.
Published 2022-12-19 · Modified
6.8EPSS 0.004
CVE-2024-26023
OS command injection vulnerability in BUFFALO wireless LAN routers allows a logged-in user to execute arbitrary OS commands.
Published 2024-04-15 · Analyzed
4.2EPSS 0.006