High severity7.8NVD Advisory· Published Dec 26, 2023· Updated Jun 17, 2026
CVE-2023-46681
CVE-2023-46681
Description
Improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability in VR-S1000 firmware Ver. 2.37 and earlier allows an authenticated attacker who can access to the product's command line interface to execute an arbitrary command.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=2.37+ 1 more
- (no CPE)range: <=2.37
- (no CPE)range: firmware Ver. 2.37 and earlier
Patches
Vulnerability mechanics
References
2- www.buffalo.jp/news/detail/20231225-01.htmlnvdPatchVendor Advisory
- jvn.jp/en/jp/JVN23771490/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.