CVE-2023-46711: Medium severity buffalo vr-s1000 vulnerability
Published Dec 26, 2023
·Updated
VR-S1000 firmware Ver. 2.37 and earlier uses a hard-coded cryptographic key which may allow an attacker to analyze the password of a specific product user.
Affected Software
2 affected components
All of the following
Buffalo Vr-s1000 Firmware<=2.37
Buffalo Vr-s1000
Remediation
Patch Available
Event History
Dec 26, 2023
CVE Published
07:29 AM
Data Sourced
07:29 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-46711?
CVE-2023-46711 has been classified with a medium severity level due to the potential exposure of user passwords.
2
How do I fix CVE-2023-46711?
To fix CVE-2023-46711, update the firmware of the VR-S1000 to a version later than 2.37.
3
What is the impact of CVE-2023-46711?
CVE-2023-46711 allows attackers to analyze and potentially exploit a hard-coded cryptographic key, compromising user accounts.
4
Who is affected by CVE-2023-46711?
Users of the Buffalo VR-S1000 firmware versions 2.37 and earlier are affected by CVE-2023-46711.
5
Is there a workaround for CVE-2023-46711?
There is no official workaround for CVE-2023-46711; updating to the latest firmware is the recommended action.