CVE-2023-51363: Medium severity buffalo vr-s1000 vulnerability
Published Dec 26, 2023
·Updated
VR-S1000 firmware Ver. 2.37 and earlier allows a network-adjacent unauthenticated attacker who can access the product's web management page to obtain sensitive information.
Affected Software
2 affected components
All of the following
Buffalo Vr-s1000 Firmware<=2.37
Buffalo Vr-s1000
Remediation
Patch Available
Event History
Dec 26, 2023
CVE Published
07:30 AM
Data Sourced
07:30 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-51363?
CVE-2023-51363 is rated as a high-severity vulnerability due to the potential for information disclosure to unauthenticated attackers.
2
How do I fix CVE-2023-51363?
To mitigate CVE-2023-51363, update the VR-S1000 firmware to version 2.38 or later.
3
What type of information can be accessed through CVE-2023-51363?
CVE-2023-51363 allows attackers to access sensitive configuration information via the web management page.
4
Who is affected by CVE-2023-51363?
Users of Buffalo VR-S1000 firmware versions 2.37 and earlier are affected by CVE-2023-51363.
5
Is remote access required to exploit CVE-2023-51363?
No, CVE-2023-51363 can be exploited by network-adjacent attackers without requiring remote access.