CVE-2025-26167

HIGH

Buffalo LS520D 4.53 - Info Disclosure

Title source: llm
STIX 2.1

Description

Buffalo LS520D 4.53 is vulnerable to Arbitrary file read, which allows unauthenticated attackers to access the NAS web UI and read arbitrary internal files.

Scores

CVSS v3 7.5
EPSS 0.0018
EPSS Percentile 38.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-200
Status published
Published Mar 06, 2025
Tracked Since Feb 18, 2026