Authentication Bypass Vulnerability in Buffalo Network Devices
CVE-2022-40966

8.8HIGH

Key Information:

Vendor
CVE Published:
7 December 2022

What is CVE-2022-40966?

A vulnerability in various Buffalo network devices allows an attacker with network access to bypass authentication mechanisms, potentially leading to unauthorized access to the affected devices. This issue affects numerous models, emphasizing the urgent need for users to update their firmware to mitigate the risk of exploitation.

Affected Version(s)

Buffalo network devices A wide range of products is affected. For the specific products/versions information, see the URLs provided by the vendor and JVN which are listed in [Reference] section.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.