CVE-2024-26023
EUVD-2024-2331715.04.2024, 11:15
OS command injection vulnerability in BUFFALO wireless LAN routers allows a logged-in user to execute arbitrary OS commands.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| buffalo | wsr-2533dhp_firmware | 𝑥 < 1.07 |
| buffalo | wsr-2533dhpl_firmware | 𝑥 < 1.07 |
| buffalo | wsr-2533dhp2_firmware | 𝑥 < 1.11 |
| buffalo | wsr-a2533dhp2_firmware | 𝑥 < 1.11 |
| buffalo | wcr-1166ds_firmware | 𝑥 < 1.33 |
| buffalo | wsr-1166dhp_firmware | 𝑥 < 1.15 |
| buffalo | wsr-1166dhp2_firmware | 𝑥 < 1.15 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| buffalo_inc | wcr_1166ds | 𝑥 ≤ 1.32 | ADP |