BUFFALO Wi-Fi Routers Authentication Bypass Vulnerability Allowing Unauthenticated Configuration Changes

Vulnerability

A vulnerability allowing authentication bypass has been identified in multiple BUFFALO Wi-Fi router products. This issue may enable an attacker to access the router's login interface and modify critical configuration settings without the need for authentication. The vulnerability is present in several different router models, all of which require the 'Internet-side remote access setting' to be enabled for exploitation.

Impact

Exploitation of this vulnerability allows unauthorized users to alter important configuration settings on the affected router.

Remediation

Users can update the router's firmware to the latest version. Instructions for downloading the firmware update are available on the BUFFALO support website.

Added: Mar 27, 2026, 6:21 AM
Updated: Mar 27, 2026, 6:21 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.9
remediation
0.0
relevance
4.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.