Known vulnerabilities in WSR-2533DHPL2
Vendor:
BUFFALO INC.
Software:
WSR-2533DHPL2
Software CPE:
cpe:2.3:h:buffalo:wsr-2533dhpl2:*:*:*:*:*:*:*:*
Website:
https://www.buffalo.jp/
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU70084 - Hidden Functionality (Backdoor) CVE-2022-43486 |
CWE-912 | Low | 1.04 | 09.12.2022 |
SB2022120910 |
||
| #VU70083 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-43443 |
CWE-78 | Medium | 1.04 | 09.12.2022 |
SB2022120910 |
||
| #VU70082 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-43466 |
CWE-78 | Low | 1.04 | 09.12.2022 |
SB2022120910 |
||
| #VU52638 - Improper Access Control CVE-2021-20092 |
CWE-284 | Medium | - | 27.04.2021 |
SB2021042705 |
||
| #VU52637 - Improper Control of Generation of Code ('Code Injection') CVE-2021-20091 |
CWE-94 | Medium | - | 27.04.2021 |
SB2021042705 |
||
| #VU52635 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-20090 |
CWE-22 | Critical | - | 27.04.2021 |
SB2021042705 |