High severity7.2NVD Advisory· Published Nov 26, 2018· Updated Jun 17, 2026
CVE-2018-13320
CVE-2018-13320
Description
System Command Injection in network.set_auth_settings in Buffalo TS5600D1206 version 3.70-0.10 allows attackers to execute system commands via the adminUsername and adminPassword parameters.
Affected products
2- cpe:2.3:o:buffalo:ts5600d1206_firmware:3.61-0.10:*:*:*:*:*:*:*
- Range: 3.70-0.10
Patches
Vulnerability mechanics
References
1- blog.securityevaluators.com/buffalo-terastation-ts5600d1206-nas-cve-disclosure-ab5d159f036dnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.