Vulnerabilities
381,276
with PoCs
37,250
CISA KEV
1,665
Ransomware
606
with Nuclei
4,342

Showing 2 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
Vulnerability search results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

buffalo wsr-2533dhpl2-bk_firmware Improper Authentication

The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not properly restrict access to sensitive information from an unauthorized actor.

CWE-200CWE-287Apr 29, 20211 related artifact
CVSS7.5v3.1EPSS8.17%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX

Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 Configuration Injection

The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not properly sanitize user input. An authenticated remote attacker could leverage this vulnerability to alter device configuration, potentially gaining remote code execution.

Apr 29, 20211 related artifact
CVSS8.8v3.1EPSS8.8%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX