First published: Wed Jun 09 2021(Updated: )
WSR-1166DHP3 firmware Ver.1.16 and prior and WSR-1166DHP4 firmware Ver.1.02 and prior allow an attacker to execute arbitrary OS commands with root privileges via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Buffalo WSR-1166DHP4 | <=1.02 | |
Buffalo WSR-1166DHP4 | ||
Buffalo WSR-1166DHP3 Firmware | <=1.16 | |
Buffalo WSR-1166DHP3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-20731 is high with a severity value of 8.8.
CVE-2021-20731 affects WSR-1166DHP3 firmware Ver.1.16 and prior, as well as WSR-1166DHP4 firmware Ver.1.02 and prior.
An attacker can exploit CVE-2021-20731 to execute arbitrary OS commands with root privileges, although the specific vectors are unspecified.
Yes, Buffalo WSR-1166DHP4 firmware version 1.02 is vulnerable to CVE-2021-20731.
You can find more information about CVE-2021-20731 at the following references: [https://jvn.jp/en/vu/JVNVU92862829/index.html](https://jvn.jp/en/vu/JVNVU92862829/index.html) and [https://www.buffalo.jp/news/detail/20210531-01.html](https://www.buffalo.jp/news/detail/20210531-01.html)