First published: Tue Dec 26 2023(Updated: )
VR-S1000 firmware Ver. 2.37 and earlier allows a network-adjacent unauthenticated attacker who can access the product's web management page to obtain sensitive information.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Buffalo Vr-s1000 | <=2.37 | |
Buffalo Vr-s1000 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-51363 is rated as a high-severity vulnerability due to the potential for information disclosure to unauthenticated attackers.
To mitigate CVE-2023-51363, update the VR-S1000 firmware to version 2.38 or later.
CVE-2023-51363 allows attackers to access sensitive configuration information via the web management page.
Users of Buffalo VR-S1000 firmware versions 2.37 and earlier are affected by CVE-2023-51363.
No, CVE-2023-51363 can be exploited by network-adjacent attackers without requiring remote access.