Buffalo WXR-1900DHP2 firmware Ver.2.48 and earlier allows an attacker to bypass authentication and execute arbitrary commands on the device via unspecified vectors.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
http://buffalo.jp/support_s/s20180223.html | vendor advisory |
https://jvn.jp/en/jp/JVN97144273/index.html | third party advisory |