CVE-2022-40966
Last modified
CVE-2022-40966 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. Authentication bypass vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to bypass authentication and access the device. The affected products/versions are as follows: WCR-300 firmware Ver. EPSS estimates a 0.34% chance of exploitation in the next 30 days.
Description
Authentication bypass vulnerability in multiple Buffalo network devices allows a network-adjacent attacker to bypass authentication and access the device. The affected products/versions are as follows: WCR-300 firmware Ver. 1.87 and earlier, WHR-HP-G300N firmware Ver. 2.00 and earlier, WHR-HP-GN firmware Ver. 1.87 and earlier, WPL-05G300 firmware Ver. 1.88 and earlier, WRM-D2133HP firmware Ver. 2.85 and earlier, WRM-D2133HS firmware Ver. 2.96 and earlier, WTR-M2133HP firmware Ver. 2.85 and earlier, WTR-M2133HS firmware Ver. 2.96 and earlier, WXR-1900DHP firmware Ver. 2.50 and earlier, WXR-1900DHP2 firmware Ver. 2.59 and earlier, WXR-1900DHP3 firmware Ver. 2.63 and earlier, WXR-5950AX12 firmware Ver. 3.40 and earlier, WXR-6000AX12B firmware Ver. 3.40 and earlier, WXR-6000AX12S firmware Ver. 3.40 and earlier, WZR-300HP firmware Ver. 2.00 and earlier, WZR-450HP firmware Ver. 2.00 and earlier, WZR-600DHP firmware Ver. 2.00 and earlier, WZR-900DHP firmware Ver. 1.15 and earlier, WZR-1750DHP2 firmware Ver. 2.31 and earlier, WZR-HP-AG300H firmware Ver. 1.76 and earlier, WZR-HP-G302H firmware Ver. 1.86 and earlier, WEM-1266 firmware Ver. 2.85 and earlier, WEM-1266WP firmware Ver. 2.85 and earlier, WLAE-AG300N firmware Ver. 1.86 and earlier, FS-600DHP firmware Ver. 3.40 and earlier, FS-G300N firmware Ver. 3.14 and earlier, FS-HP-G300N firmware Ver. 3.33 and earlier, FS-R600DHP firmware Ver. 3.40 and earlier, BHR-4GRV firmware Ver. 2.00 and earlier, DWR-HP-G300NH firmware Ver. 1.84 and earlier, DWR-PG firmware Ver. 1.83 and earlier, HW-450HP-ZWE firmware Ver. 2.00 and earlier, WER-A54G54 firmware Ver. 1.43 and earlier, WER-AG54 firmware Ver. 1.43 and earlier, WER-AM54G54 firmware Ver. 1.43 and earlier, WER-AMG54 firmware Ver. 1.43 and earlier, WHR-300 firmware Ver. 2.00 and earlier, WHR-300HP firmware Ver. 2.00 and earlier, WHR-AM54G54 firmware Ver. 1.43 and earlier, WHR-AMG54 firmware Ver. 1.43 and earlier, WHR-AMPG firmware Ver. 1.52 and earlier, WHR-G firmware Ver. 1.49 and earlier, WHR-G300N firmware Ver. 1.65 and earlier, WHR-G301N firmware Ver. 1.87 and earlier, WHR-G54S firmware Ver. 1.43 and earlier, WHR-G54S-NI firmware Ver. 1.24 and earlier, WHR-HP-AMPG firmware Ver. 1.43 and earlier, WHR-HP-G firmware Ver. 1.49 and earlier, WHR-HP-G54 firmware Ver. 1.43 and earlier, WLI-H4-D600 firmware Ver. 1.88 and earlier, WS024BF firmware Ver. 1.60 and earlier, WS024BF-NW firmware Ver. 1.60 and earlier, WXR-1750DHP firmware Ver. 2.60 and earlier, WXR-1750DHP2 firmware Ver. 2.60 and earlier, WZR-1166DHP firmware Ver. 2.18 and earlier, WZR-1166DHP2 firmware Ver. 2.18 and earlier, WZR-1750DHP firmware Ver. 2.30 and earlier, WZR2-G300N firmware Ver. 1.55 and earlier, WZR-450HP-CWT firmware Ver. 2.00 and earlier, WZR-450HP-UB firmware Ver. 2.00 and earlier, WZR-600DHP2 firmware Ver. 1.15 and earlier, WZR-600DHP3 firmware Ver. 2.19 and earlier, WZR-900DHP2 firmware Ver. 2.19 and earlier, WZR-AGL300NH firmware Ver. 1.55 and earlier, WZR-AMPG144NH firmware Ver. 1.49 and earlier, WZR-AMPG300NH firmware Ver. 1.51 and earlier, WZR-D1100H firmware Ver. 2.00 and earlier, WZR-G144N firmware Ver. 1.48 and earlier, WZR-G144NH firmware Ver. 1.48 and earlier, WZR-HP-G300NH firmware Ver. 1.84 and earlier, WZR-HP-G301NH firmware Ver. 1.84 and earlier, WZR-HP-G450H firmware Ver. 1.90 and earlier, WZR-S1750DHP firmware Ver. 2.32 and earlier, WZR-S600DHP firmware Ver. 2.19 and earlier, and WZR-S900DHP firmware Ver. 2.19 and earlier.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Buffalo | Wcr-300 Firmware | <= 1.87 |
| Buffalo | Whr-Hp-G300n Firmware | <= 2.00 |
| Buffalo | Whr-Hp-Gn Firmware | <= 1.87 |
| Buffalo | Wpl-05g300 Firmware | <= 1.88 |
| Buffalo | Wrm-D2133hp Firmware | <= 2.85 |
| Buffalo | Wrm-D2133hs Firmware | <= 2.96 |
| Buffalo | Wtr-M2133hp Firmware | <= 2.85 |
| Buffalo | Wtr-M2133hs Firmware | <= 2.96 |
| Buffalo | Wxr-1900dhp Firmware | <= 2.50 |
| Buffalo | Wxr-1900dhp2 Firmware | <= 2.59 |
| Buffalo | Wxr-1900dhp3 Firmware | <= 2.63 |
| Buffalo | Wxr-5950ax12 Firmware | <= 3.40 |
| Buffalo | Wxr-6000ax12b Firmware | <= 3.40 |
| Buffalo | Wxr-6000ax12s Firmware | <= 3.40 |
| Buffalo | Wzr-300hp Firmware | <= 2.00 |
| Buffalo | Wzr-450hp Firmware | <= 2.00 |
| Buffalo | Wzr-600dhp Firmware | <= 2.00 |
| Buffalo | Wzr-900dhp Firmware | <= 1.15 |
| Buffalo | Wzr-1750dhp2 Firmware | <= 2.31 |
| Buffalo | Wzr-Hp-Ag300h Firmware | <= 1.76 |
| Buffalo | Wzr-Hp-G302h Firmware | <= 1.86 |
| Buffalo | Wem-1266 Firmware | <= 2.85 |
| Buffalo | Wem-1266wp Firmware | <= 2.85 |
| Buffalo | Wlae-Ag300n Firmware | <= 1.86 |
| Buffalo | Fs-600dhp Firmware | <= 3.40 |
| Buffalo | Fs-G300n Firmware | <= 3.14 |
| Buffalo | Fs-Hp-G300n Firmware | <= 3.33 |
| Buffalo | Fs-R600dhp Firmware | <= 3.40 |
| Buffalo | Bhr-4grv Firmware | <= 2.00 |
| Buffalo | Dwr-Hp-G300nh Firmware | <= 1.84 |
| Buffalo | Dwr-Pg Firmware | <= 1.83 |
| Buffalo | Hw-450hp-Zwe Firmware | <= 2.00 |
| Buffalo | Wer-A54g54 Firmware | <= 1.43 |
| Buffalo | Wer-Ag54 Firmware | <= 1.43 |
| Buffalo | Wer-Am54g54 Firmware | <= 1.43 |
| Buffalo | Wer-Amg54 Firmware | <= 1.43 |
| Buffalo | Whr-300 Firmware | <= 2.00 |
| Buffalo | Whr-300hp Firmware | <= 2.00 |
| Buffalo | Whr-Am54g54 Firmware | <= 1.43 |
| Buffalo | Whr-Amg54 Firmware | <= 1.43 |
| Buffalo | Whr-Ampg Firmware | <= 1.52 |
| Buffalo | Whr-G Firmware | <= 1.49 |
| Buffalo | Whr-G300n Firmware | <= 1.65 |
| Buffalo | Whr-G301n Firmware | <= 1.87 |
| Buffalo | Whr-G54s Firmware | <= 1.43 |
| Buffalo | Whr-G54s-Ni Firmware | <= 1.24 |
| Buffalo | Whr-Hp-Ampg Firmware | <= 1.43 |
| Buffalo | Whr-Hp-G Firmware | <= 1.49 |
| Buffalo | Whr-Hp-G54 Firmware | <= 1.43 |
| Buffalo | Wli-H4-D600 Firmware | <= 1.88 |
Showing 50 of 75 affected configurations. See NVD for the full list.
References
- https://jvn.jp/en/vu/JVNVU92805279/index.htmlThird Party Advisory
- https://www.buffalo.jp/news/detail/20221003-01.htmlPatch, Vendor Advisory
- https://jvn.jp/en/vu/JVNVU92805279/index.htmlThird Party Advisory
- https://www.buffalo.jp/news/detail/20221003-01.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-40966?
How severe is CVE-2022-40966?
How do I fix CVE-2022-40966?
Are you affected by CVE-2022-40966?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
