BUFFALO WZR-600DHP
cpe:2.3:h:buffalo:wzr-600dhp:*:*:*:*:*:*:*, +3 more
A code injection vulnerability has been identified in multiple BUFFALO Wi-Fi router products. This vulnerability allows for the execution of arbitrary code on the affected devices. The issue arises from a dependency on a vulnerable third-party component, mini_httpd, which has its own known vulnerability (CVE-2015-1548).
Exploitation of this vulnerability allows for the execution of arbitrary code on the affected router.
Users are advised to update the router's firmware to the latest version. Instructions for downloading the update are available on the BUFFALO support website. For models no longer supported, it is recommended to discontinue use and consider transitioning to a new product.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.