Known vulnerabilities in WZR-900DHP

Software: WZR-900DHP
Software CPE: cpe:2.3:h:buffalo:wzr-900dhp:*:*:*:*:*:*:*:*
Total vulnerabilities: 8
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WZR-900DHP WZR-900DHP is affected by 8 known vulnerabilities: 2 high, 2 medium, 4 low Critical High Medium Low

Vulnerabilities (8)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU124657 - Missing Authentication for Critical Function
CVE-2026-33366
CWE-306 Medium
No
No
- 27.03.2026 SB2026032735
SB2026032738
#VU124656 - Hidden Functionality (Backdoor)
CVE-2026-33280
CWE-912 Low
No
No
- 27.03.2026 SB2026032735
SB2026032738
#VU124655 - Authentication Bypass Using an Alternate Path or Channel
CVE-2026-32678
CWE-288 Low
No
No
- 27.03.2026 SB2026032735
SB2026032738
#VU124654 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-32669
CWE-94 High
No
No
- 27.03.2026 SB2026032735
SB2026032738
#VU124653 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-27650
CWE-78 High
No
No
- 27.03.2026 SB2026032735
SB2026032738
#VU67888 - Authentication Bypass Using an Alternate Path or Channel
CVE-2022-40966
CWE-288 Medium
No
No
1.16 04.10.2022 SB2022100410
#VU67887 - Use of Hard-coded Credentials
CVE-2022-34840
CWE-798 Low
No
No
1.16 04.10.2022 SB2022100410
#VU58 - Improper Neutralization of Alternate XSS Syntax
CVE-2015-1548
CWE-119 Low
No
No
- 29.06.2016 SB2015012401
SB2016071407
SB2026032735
and 1 more