Impact
Stack-based buffer overflow vulnerability in Buffalo Wi-Fi products allows an unauthenticated attacker to craft a malicious HTTP request that overflows a stack buffer and disrupts device operation. This leads to a denial‑of‑service condition without compromising confidentiality or integrity of data. The weakness corresponds to CWE‑121.
Affected Systems
Buffalo Inc. devices WEX‑G300 and WSR‑300HP are impacted. Any installation of these Wi-Fi products that contains the vulnerable firmware is susceptible; the description does not provide granular version numbers or firmware releases.
Risk and Exploitability
The CVSS score of 8.7 indicates high severity. EPSS is not available, so the current probability of exploitation is unknown. The vulnerability is not listed in CISA KEV. The attack vector is remote and requires only network access to send a crafted HTTP request; no authentication is needed. Successful exploitation results in temporary or sustained service interruption for affected networks.
OpenCVE Enrichment