Cross-Site Scripting Vulnerability in Buffalo WMR-433 and WMR-433W Firmware
CVE-2017-2274
6.1MEDIUM
What is CVE-2017-2274?
A cross-site scripting vulnerability exists in the firmware of Buffalo's WMR-433 and WMR-433W devices. This flaw allows remote attackers to execute arbitrary web scripts or HTML on the affected devices through unspecified vectors. Attackers can exploit this vulnerability to manipulate user interactions, potentially compromising user data and security.
Affected Version(s)
WMR-433 firmware Ver.1.02 and earlier
WMR-433W firmware Ver.1.40 and earlier