Sensitive Information at Risk: VR-S1000 Firmware Vulnerability
CVE-2023-51363

6.5MEDIUM

Key Information:

Vendor
BUFFALO INC.
Status
VR-S1000
Vendor
CVE Published:
26 December 2023

Badges

📰 News Worthy

Summary

VR-S1000 firmware Ver. 2.37 and earlier allows a network-adjacent unauthenticated attacker who can access the product's web management page to obtain sensitive information.

Affected Version(s)

VR-S1000 firmware Ver. 2.37 and earlier

News Articles

CVE-2023-51363 Archives

VulnerabilityDecember 27, 2023The Urgent Need to Patch Buffalo’s VR-S1000 VPN RouterIn the digital era, small and medium-sized businesses have become increasingly reliant on the Internet for their daily...

11 months ago

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 📰

    First article discovered by Penetration Testing

  • Vulnerability published

  • Vulnerability Reserved

Collectors

NVD DatabaseMitre Database1 News Article(s)
.