VYPR
High severity8.8NVD Advisory· Published Dec 19, 2022· Updated Jun 17, 2026

CVE-2022-43443

CVE-2022-43443

Description

OS command injection vulnerability in Buffalo network devices allows an network-adjacent attacker to execute an arbitrary OS command if a specially crafted request is sent to the management page.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

29
  • Buffalotech/WCR-1166DScpe-rescue2 versions
    firmware Ver. 1.34 and earlier+ 1 more
    • (no CPE)range: firmware Ver. 1.34 and earlier
    • cpe:2.3:o:buffalo:wcr-1166ds_firmware:*:*:*:*:*:*:*:*range: <=1.34
  • cpe:2.3:o:buffalo:wsr-3200ax4s_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:buffalo:wsr-3200ax4s_firmware:*:*:*:*:*:*:*:*range: <=1.26
    • (no CPE)range: firmware Ver. 1.26 and earlier
  • cpe:2.3:o:buffalo:wsr-3200ax4b_firmware:1.25:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:buffalo:wsr-3200ax4b_firmware:1.25:*:*:*:*:*:*:*
    • (no CPE)range: firmware Ver. 1.25
  • cpe:2.3:o:buffalo:wsr-2533dhp2_firmware:*:*:*:*:*:*:*:*
    Range: <=1.22
  • cpe:2.3:o:buffalo:wsr-a2533dhp2_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:buffalo:wsr-a2533dhp2_firmware:*:*:*:*:*:*:*:*range: <=1.22
    • (no CPE)range: firmware Ver. 1.22 and earlier
  • cpe:2.3:o:buffalo:wsr-2533dhp3_firmware:*:*:*:*:*:*:*:*
    Range: <=1.26
  • cpe:2.3:o:buffalo:wsr-a2533dhp3_firmware:*:*:*:*:*:*:*:*
    Range: <=1.26
  • cpe:2.3:o:buffalo:wsr-2533dhpl2_firmware:*:*:*:*:*:*:*:*
    Range: <=1.03
  • cpe:2.3:o:buffalo:wsr-2533dhpls_firmware:*:*:*:*:*:*:*:*
    Range: <=1.07
  • cpe:2.3:o:buffalo:wsr-2533dhp_firmware:*:*:*:*:*:*:*:*
    Range: <=1.08
  • cpe:2.3:o:buffalo:wsr-2533dhpl_firmware:*:*:*:*:*:*:*:*
    Range: <=1.08
  • Buffalotech/WSR-2533DHP3cpe-rescue4 versions
    firmware Ver. 1.08 and earlier+ 3 more
    • (no CPE)range: firmware Ver. 1.08 and earlier
    • (no CPE)range: firmware Ver. 1.22 and earlier
    • (no CPE)range: firmware Ver. 1.26 and earlier
    • (no CPE)range: firmware Ver. 1.26 and earlier
  • Buffalotech/WSR-2533DHPL2cpe-rescue4 versions
    firmware Ver. 1.08 and earlier+ 3 more
    • (no CPE)range: firmware Ver. 1.08 and earlier
    • (no CPE)range: firmware Ver. 1.03 and earlier
    • (no CPE)range: firmware Ver. 1.07 and earlier
    • (no CPE)range: firmware Ver. 1.05
  • Range: firmware Ver. 1.17 and earlier
  • Range: firmware Ver. 1.16 and earlier
  • BUFFALO INC./WXR-11000XE12v5
    Range: firmware Ver. 1.10 and earlier
  • BUFFALO INC./WXR-5700AX7Sv5
    Range: firmware Ver. 1.27 and earlier
  • BUFFALO INC./WXR-5700AX7Bv5
    Range: firmware Ver. 1.27 and earlier

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.