CVE-2011-1324

EUVD-2011-1332
Multiple cross-site request forgery (CSRF) vulnerabilities in the management screen on Buffalo WHR, WZR2, WZR, WER, and BBR series routers with firmware 1.x; BHR-4RV and FS-G54 routers with firmware 2.x; and AS-100 routers allow remote attackers to hijack the authentication of administrators for requests that modify settings, as demonstrated by changing the login password.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 30%
Affected Products (NVD)
VendorProductVersion
buffalotechbbr-4hg_firmware
1.02
buffalotechbbr-4hg_firmware
1.04
buffalotechbbr-4hg_firmware
1.04:beta
buffalotechbbr-4hg_firmware
1.10
buffalotechbbr-4hg_firmware
1.10:beta
buffalotechbbr-4hg_firmware
1.11:beta
buffalotechbbr-4hg_firmware
1.12
buffalotechbbr-4hg_firmware
1.20
buffalotechbbr-4hg_firmware
1.20:beta
buffalotechbbr-4hg_firmware
1.30
buffalotechbbr-4hg_firmware
1.30:beta
buffalotechbbr-4hg_firmware
1.31
buffalotechbbr-4hg_firmware
1.32
buffalotechbbr-4hg_firmware
1.32:beta
buffalotechbbr-4hg_firmware
1.33:beta
buffalotechbbr-4mg_firmware
1.00
buffalotechbbr-4mg_firmware
1.01:beta
buffalotechbbr-4mg_firmware
1.03
buffalotechbbr-4mg_firmware
1.04
buffalotechbbr-4mg_firmware
1.04:beta
buffalotechbbr-4mg_firmware
1.10
buffalotechbbr-4mg_firmware
1.10:beta
buffalotechbbr-4mg_firmware
1.11:beta
buffalotechbbr-4mg_firmware
1.12
buffalotechbbr-4mg_firmware
1.20
buffalotechbbr-4mg_firmware
1.20:beta
buffalotechbbr-4mg_firmware
1.30
buffalotechbbr-4mg_firmware
1.30:beta
buffalotechbbr-4mg_firmware
1.31
buffalotechbbr-4mg_firmware
1.32
buffalotechbbr-4mg_firmware
1.32:beta
buffalotechbbr-4mg_firmware
1.33
buffalotechbbr-4mg_firmware
1.33:beta
buffalotechbhr-4rv_firmware
2.31
buffalotechbhr-4rv_firmware
2.32:prebeta
buffalotechbhr-4rv_firmware
2.33:prebeta
buffalotechbhr-4rv_firmware
2.42
buffalotechbhr-4rv_firmware
2.46
buffalotechbhr-4rv_firmware
2.48
buffalotechfs-g54_firmware
2.07
buffalotechwer-a54g54_firmware
1.00
buffalotechwer-a54g54_firmware
1.01:beta
buffalotechwer-a54g54_firmware
1.02
buffalotechwer-a54g54_firmware
1.03
buffalotechwer-a54g54_firmware
1.10
buffalotechwer-a54g54_firmware
1.12
buffalotechwer-a54g54_firmware
1.12:beta
buffalotechwer-a54g54_firmware
1.13
buffalotechwer-ag54_firmware
1.04
buffalotechwer-ag54_firmware
1.12
buffalotechwer-ag54_firmware
1.12:beta
buffalotechwer-am54g54_firmware
1.11
buffalotechwer-am54g54_firmware
1.12
buffalotechwer-am54g54_firmware
1.12:beta
buffalotechwer-am54g54_firmware
1.13
buffalotechwer-am54g54_firmware
1.14
buffalotechwer-amg54_firmware
1.11
buffalotechwer-amg54_firmware
1.12
buffalotechwer-amg54_firmware
1.14
buffalotechwhr-am54g54_firmware
1.30
buffalotechwhr-am54g54_firmware
1.38
buffalotechwhr-am54g54_firmware
1.40
buffalotechwhr-am54g54_firmware
1.42
buffalotechwhr-amg54_firmware
1.31
buffalotechwhr-amg54_firmware
1.38
buffalotechwhr-amg54_firmware
1.40
buffalotechwhr-amg54_firmware
1.42
buffalotechwhr-ampg_firmware
1.46
buffalotechwhr-g_firmware
1.46
buffalotechwhr-g54s_firmware
1.20
buffalotechwhr-g54s_firmware
1.21
buffalotechwhr-g54s_firmware
1.23
buffalotechwhr-g54s_firmware
1.38
buffalotechwhr-g54s_firmware
1.40
buffalotechwhr-g54s_firmware
1.42
buffalotechwhr-hp-ampg_firmware
1.32
buffalotechwhr-hp-g_firmware
1.46
buffalotechwhr-hp-g54_firmware
1.20
buffalotechwhr-hp-g54_firmware
1.21
buffalotechwhr-hp-g54_firmware
1.23
buffalotechwhr-hp-g54_firmware
1.38
buffalotechwhr-hp-g54_firmware
1.40
buffalotechwhr-hp-g54_firmware
1.42
buffalotechwzr-ampg144nh_firmware
1.47
buffalotechwzr-ampg144nh_firmware
1.48:beta
buffalotechwzr-ampg300nh_firmware
1.48
buffalotechwzr-g144n_firmware
1.45
buffalotechwzr-g144n_firmware
1.46:beta
buffalotechwzr-g144n_firmware
1.47
buffalotechwzr-g144n_firmware
1.47:beta
buffalotechwzr-g144nh_firmware
1.45
buffalotechwzr-g144nh_firmware
1.47
buffalotechwzr-g144nh_firmware
1.47:beta
buffalotechwzr-g144nh_firmware
1.48
buffalotechwzr2-g300n_firmware
1.48
buffalotechwzr2-g300n_firmware
1.50:beta
buffalotechas-100
*
buffalotechbbr-4hg
*
buffalotechbbr-4mg
*
buffalotechbhr-4rv
*
buffalotechfs-g54
*
buffalotechwer-a54g54
*
buffalotechwer-ag54
*
buffalotechwer-am54g54
*
buffalotechwer-amg54
*
buffalotechwhr-am54g54
*
buffalotechwhr-amg54
*
buffalotechwhr-ampg
*
buffalotechwhr-g
*
buffalotechwhr-g54s
*
buffalotechwhr-hp-ampg
*
buffalotechwhr-hp-g
*
buffalotechwhr-hp-g54
*
buffalotechwzr-ampg144nh
*
buffalotechwzr-ampg300nh
*
buffalotechwzr-g144n
*
buffalotechwzr-g144nh
*
buffalotechwzr2-g300n
*
𝑥
= Vulnerable software versions