OS Command Injection Vulnerability in Buffalo Network Devices
CVE-2022-43443
8.8HIGH
What is CVE-2022-43443?
An OS command injection vulnerability exists in Buffalo network devices, enabling an attacker who is on the same network to execute arbitrary OS commands. By sending a specially crafted request to the management page, unauthorized actions can be performed, potentially compromising the device and the network's integrity.
Affected Version(s)
WCR-1166DS firmware Ver. 1.34 and earlier
WSR-1166DHP firmware Ver. 1.16 and earlier
WSR-1166DHP2 firmware Ver. 1.17 and earlier