Lucene search

K

BS-GS Series Security Vulnerabilities

cve
cve

CVE-2023-26588

Use of hard-coded credentials vulnerability in Buffalo network devices allows an attacker to access the debug function of the product. The affected products and versions are as follows: BS-GSL2024 firmware Ver. 1.10-0.03 and earlier, BS-GSL2016P firmware Ver. 1.10-0.03 and earlier, BS-GSL2016...

7.5CVSS

7.5AI Score

0.002EPSS

2023-04-11 09:15 AM
24
cve
cve

CVE-2023-24464

Stored-cross-site scripting vulnerability in Buffalo network devices allows an attacker with access to the web management console of the product to execute arbitrary JavaScript on a legitimate user's web browser. The affected products and versions are as follows: BS-GS2008 firmware Ver. 1.0.10.01.....

5.4CVSS

5.7AI Score

0.001EPSS

2023-04-11 09:15 AM
24
cve
cve

CVE-2023-24544

Improper access control vulnerability in Buffalo network devices allows a network-adjacent attacker to obtain specific files of the product. As a result, the product settings may be altered. The affected products and versions are as follows: BS-GSL2024 firmware Ver. 1.10-0.03 and earlier,...

8.1CVSS

7.8AI Score

0.001EPSS

2023-04-11 09:15 AM
21