Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker with access to the product's login page may obtain configured credentials.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-20984 Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker with access to the product's login page may obtain configured credentials.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 30 Jun 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Buffalo wsr-2533dhp
Buffalo wsr-2533dhp2
Buffalo wsr-2533dhp2 Firmware
Buffalo wsr-2533dhp Firmware
Buffalo wsr-2533dhpl Firmware
Buffalo wsr-a2533dhp2
Buffalo wsr-a2533dhp2 Firmware
CPEs cpe:2.3:h:buffalo:wsr-2533dhp2:-:*:*:*:*:*:*:*
cpe:2.3:h:buffalo:wsr-2533dhp:-:*:*:*:*:*:*:*
cpe:2.3:h:buffalo:wsr-2533dhpl:-:*:*:*:*:*:*:*
cpe:2.3:h:buffalo:wsr-a2533dhp2:-:*:*:*:*:*:*:*
cpe:2.3:o:buffalo:wsr-2533dhp2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:buffalo:wsr-2533dhp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:buffalo:wsr-2533dhpl_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:buffalo:wsr-a2533dhp2_firmware:*:*:*:*:*:*:*:*
Vendors & Products Buffalo wsr-2533dhp
Buffalo wsr-2533dhp2
Buffalo wsr-2533dhp2 Firmware
Buffalo wsr-2533dhp Firmware
Buffalo wsr-2533dhpl Firmware
Buffalo wsr-a2533dhp2
Buffalo wsr-a2533dhp2 Firmware

Tue, 18 Mar 2025 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Buffalo
Buffalo a2533dhp2
Buffalo wsr-2533dhpl
Buffalo Inc
Buffalo Inc a2533dhp2
Buffalo Inc wsr-2533dhp2
Weaknesses CWE-256
CPEs cpe:2.3:a:buffalo:a2533dhp2:1.06:*:*:*:*:*:*:*
cpe:2.3:a:buffalo:wsr-2533dhpl:1.06:*:*:*:*:*:*:*
cpe:2.3:a:buffalo_inc:a2533dhp2:1.06:*:*:*:*:*:*:*
cpe:2.3:a:buffalo_inc:wsr-2533dhp2:1.06:*:*:*:*:*:*:*
Vendors & Products Buffalo
Buffalo a2533dhp2
Buffalo wsr-2533dhpl
Buffalo Inc
Buffalo Inc a2533dhp2
Buffalo Inc wsr-2533dhp2
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-03-18T20:05:21.115Z

Reserved: 2024-03-19T02:22:42.654Z

Link: CVE-2024-23486

cve-icon Vulnrichment

Updated: 2024-08-01T23:06:24.713Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-15T11:15:07.820

Modified: 2025-06-30T12:57:00.790

Link: CVE-2024-23486

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.