Description
Improper access control vulnerability in Buffalo broadband routers (BHR-4GRV firmware Ver.1.99 and prior, DWR-HP-G300NH firmware Ver.1.83 and prior, HW-450HP-ZWE firmware Ver.1.99 and prior, WHR-300HP firmware Ver.1.99 and prior, WHR-300 firmware Ver.1.99 and prior, WHR-G301N firmware Ver.1.86 and prior, WHR-HP-G300N firmware Ver.1.99 and prior, WHR-HP-GN firmware Ver.1.86 and prior, WPL-05G300 firmware Ver.1.87 and prior, WZR-450HP-CWT firmware Ver.1.99 and prior, WZR-450HP-UB firmware Ver.1.99 and prior, WZR-HP-AG300H firmware Ver.1.75 and prior, WZR-HP-G300NH firmware Ver.1.83 and prior, WZR-HP-G301NH firmware Ver.1.83 and prior, WZR-HP-G302H firmware Ver.1.85 and prior, WZR-HP-G450H firmware Ver.1.89 and prior, WZR-300HP firmware Ver.1.99 and prior, WZR-450HP firmware Ver.1.99 and prior, WZR-600DHP firmware Ver.1.99 and prior, WZR-D1100H firmware Ver.1.99 and prior, FS-HP-G300N firmware Ver.3.32 and prior, FS-600DHP firmware Ver.3.38 and prior, FS-R600DHP firmware Ver.3.39 and prior, and FS-G300N firmware Ver.3.13 and prior) allows remote unauthenticated attackers to bypass access restriction and to start telnet service and execute arbitrary OS commands with root privileges via unspecified vectors.
Published: 2021-04-28
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-26831 Improper access control vulnerability in Buffalo broadband routers (BHR-4GRV firmware Ver.1.99 and prior, DWR-HP-G300NH firmware Ver.1.83 and prior, HW-450HP-ZWE firmware Ver.1.99 and prior, WHR-300HP firmware Ver.1.99 and prior, WHR-300 firmware Ver.1.99 and prior, WHR-G301N firmware Ver.1.86 and prior, WHR-HP-G300N firmware Ver.1.99 and prior, WHR-HP-GN firmware Ver.1.86 and prior, WPL-05G300 firmware Ver.1.87 and prior, WZR-450HP-CWT firmware Ver.1.99 and prior, WZR-450HP-UB firmware Ver.1.99 and prior, WZR-HP-AG300H firmware Ver.1.75 and prior, WZR-HP-G300NH firmware Ver.1.83 and prior, WZR-HP-G301NH firmware Ver.1.83 and prior, WZR-HP-G302H firmware Ver.1.85 and prior, WZR-HP-G450H firmware Ver.1.89 and prior, WZR-300HP firmware Ver.1.99 and prior, WZR-450HP firmware Ver.1.99 and prior, WZR-600DHP firmware Ver.1.99 and prior, WZR-D1100H firmware Ver.1.99 and prior, FS-HP-G300N firmware Ver.3.32 and prior, FS-600DHP firmware Ver.3.38 and prior, FS-R600DHP firmware Ver.3.39 and prior, and FS-G300N firmware Ver.3.13 and prior) allows remote unauthenticated attackers to bypass access restriction and to start telnet service and execute arbitrary OS commands with root privileges via unspecified vectors.
History

No history.

Subscriptions

Buffalo Bhr-4grv Bhr-4grv Firmware Dwr-hp-g300nh Dwr-hp-g300nh Firmware Fs-600dhp Fs-600dhp Firmware Fs-g300n Fs-g300n Firmware Fs-hp-g300n Fs-hp-g300n Firmware Fs-r600dhp Fs-r600dhp Firmware Hw-450hp-zwe Hw-450hp-zwe Firmware Whr-300 Whr-300 Firmware Whr-300hp Whr-300hp Firmware Whr-g301n Whr-g301n Firmware Whr-hp-g300n Whr-hp-g300n Firmware Whr-hp-gn Whr-hp-gn Firmware Wpl-05g300 Wpl-05g300 Firmware Wzr-300hp Wzr-300hp Firmware Wzr-450hp Wzr-450hp-cwt Wzr-450hp-cwt Firmware Wzr-450hp-ub Wzr-450hp-ub Firmware Wzr-450hp Firmware Wzr-600dhp Wzr-600dhp Firmware Wzr-d1100h Wzr-d1100h Firmware Wzr-hp-ag300h Wzr-hp-ag300h Firmware Wzr-hp-g300nh Wzr-hp-g300nh Firmware Wzr-hp-g301nh Wzr-hp-g301nh Firmware Wzr-hp-g302h Wzr-hp-g302h Firmware Wzr-hp-g450h Wzr-hp-g450h Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-03T16:53:17.975Z

Reserved: 2021-04-22T00:00:00.000Z

Link: CVE-2021-3512

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-04-28T01:15:17.187

Modified: 2024-11-21T06:21:43.343

Link: CVE-2021-3512

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses