// For flags

CVE-2021-20716

 

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Hidden functionality in multiple Buffalo network devices (BHR-4RV firmware Ver.2.55 and prior, FS-G54 firmware Ver.2.04 and prior, WBR2-B11 firmware Ver.2.32 and prior, WBR2-G54 firmware Ver.2.32 and prior, WBR2-G54-KD firmware Ver.2.32 and prior, WBR-B11 firmware Ver.2.23 and prior, WBR-G54 firmware Ver.2.23 and prior, WBR-G54L firmware Ver.2.20 and prior, WHR2-A54G54 firmware Ver.2.25 and prior, WHR2-G54 firmware Ver.2.23 and prior, WHR2-G54V firmware Ver.2.55 and prior, WHR3-AG54 firmware Ver.2.23 and prior, WHR-G54 firmware Ver.2.16 and prior, WHR-G54-NF firmware Ver.2.10 and prior, WLA2-G54 firmware Ver.2.24 and prior, WLA2-G54C firmware Ver.2.24 and prior, WLA-B11 firmware Ver.2.20 and prior, WLA-G54 firmware Ver.2.20 and prior, WLA-G54C firmware Ver.2.20 and prior, WLAH-A54G54 firmware Ver.2.54 and prior, WLAH-AM54G54 firmware Ver.2.54 and prior, WLAH-G54 firmware Ver.2.54 and prior, WLI2-TX1-AG54 firmware Ver.2.53 and prior, WLI2-TX1-AMG54 firmware Ver.2.53 and prior, WLI2-TX1-G54 firmware Ver.2.20 and prior, WLI3-TX1-AMG54 firmware Ver.2.53 and prior, WLI3-TX1-G54 firmware Ver.2.53 and prior, WLI-T1-B11 firmware Ver.2.20 and prior, WLI-TX1-G54 firmware Ver.2.20 and prior, WVR-G54-NF firmware Ver.2.02 and prior, WZR-G108 firmware Ver.2.41 and prior, WZR-G54 firmware Ver.2.41 and prior, WZR-HP-G54 firmware Ver.2.41 and prior, WZR-RS-G54 firmware Ver.2.55 and prior, and WZR-RS-G54HP firmware Ver.2.55 and prior) allows a remote attacker to enable the debug option and to execute arbitrary code or OS commands, change the configuration, and cause a denial of service (DoS) condition.

Una funcionalidad Hidden en múltiples dispositivos de red de Buffalo (firmware de BHR-4RV Ver.2.55 y anteriores, firmware de FS-G54 Ver.2.04 y anteriores, firmware de WBR2-B11 Ver.2.32 y anteriores, firmware de WBR2-G54 Ver.2 .32 y anteriores, firmware de WBR2-G54-KD Ver.2.32 y anteriores, firmware de WBR-B11 Ver.2.23 y anteriores, firmware de WBR-G54 Ver.2.23 y anteriores, firmware de WBR-G54L Ver.2.20 y anteriores, firmware de WHR2-A54G54 Ver.2 .25 y anteriores, firmware de WHR2-G54 Ver.2.23 y anteriores, firmware de WHR2-G54V Ver.2.55 y anteriores, firmware de WHR3-AG54 Ver.2.23 y anteriores, firmware de WHR-G54 Ver.2.16 y anteriores, firmware de WHR-G54-NF Ver.2 .10 y anteriores, firmware de WLA2-G54 Ver.2.24 y anteriores, firmware de WLA2-G54C Ver.2.24 y anteriores, firmware de WLA-B11 Ver.2.20 y anteriores, firmware de WLA-G54 Ver.2.20 y anteriores, firmware de WLA-G54C Ver.2.20 y anteriores, firmware de WLAH-A54G54 Ver.2 .54 y anteriores, firmware de WLAH-AM54G54 Ver.2.54 y anteriores, firmware de WLAH-G54 Ver.2.54 y anteriores, firmware de WLI2-TX1-AG54 Ver.2.53 y anteriores, firmware de WLI2-TX1-AMG54 Ver.2.53 y anteriores, firmware de WLI2-TX1-G54 Ver.2 .20 y anteriores, firmware de WLI3-TX1-AMG54 Ver.2.53 y anteriores, firmware de WLI3-TX1-G54 Ver.2.53 y anteriores, firmware de WLI-T1-B11 Ver.2.20 y anteriores, firmware de WLI-TX1-G54 Ver.2.20 y anteriores, firmware de WVR-G54-NF Ver.2 .02 y anteriores, firmware de WZR-G108 Ver.2.41 y anteriores, firmware de WZR-G54 Ver.2.41 y anteriores, firmware de WZR-HP-G54 Ver.2.41 y anteriores, firmware de WZR-RS-G54 Ver.2.55 y anteriores, y firmware de WZR-RS-G54HP Ver.2.55 y anteriores) permite a un atacante remoto habilitar la opción de depuración y ejecutar código arbitrario o comandos del Sistema Operativo, cambiar la configuración, y causar una condición de denegación de servicio (DoS)

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2020-12-17 CVE Reserved
  • 2021-04-28 CVE Published
  • 2024-06-29 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (2)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Buffalo
Search vendor "Buffalo"
Bhr-4rv Firmware
Search vendor "Buffalo" for product "Bhr-4rv Firmware"
<= 2.55
Search vendor "Buffalo" for product "Bhr-4rv Firmware" and version " <= 2.55"
-
Affected
in Buffalo
Search vendor "Buffalo"
Bhr-4rv
Search vendor "Buffalo" for product "Bhr-4rv"
--
Safe
Buffalo
Search vendor "Buffalo"
Fs-g54 Firmware
Search vendor "Buffalo" for product "Fs-g54 Firmware"
<= 2.04
Search vendor "Buffalo" for product "Fs-g54 Firmware" and version " <= 2.04"
-
Affected
in Buffalo
Search vendor "Buffalo"
Fs-g54
Search vendor "Buffalo" for product "Fs-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr2-b11 Firmware
Search vendor "Buffalo" for product "Wbr2-b11 Firmware"
<= 2.32
Search vendor "Buffalo" for product "Wbr2-b11 Firmware" and version " <= 2.32"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr2-b11
Search vendor "Buffalo" for product "Wbr2-b11"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr2-g54 Firmware
Search vendor "Buffalo" for product "Wbr2-g54 Firmware"
<= 2.32
Search vendor "Buffalo" for product "Wbr2-g54 Firmware" and version " <= 2.32"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr2-g54
Search vendor "Buffalo" for product "Wbr2-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr2-g54-kd Firmware
Search vendor "Buffalo" for product "Wbr2-g54-kd Firmware"
<= 2.32
Search vendor "Buffalo" for product "Wbr2-g54-kd Firmware" and version " <= 2.32"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr2-g54-kd
Search vendor "Buffalo" for product "Wbr2-g54-kd"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr-b11 Firmware
Search vendor "Buffalo" for product "Wbr-b11 Firmware"
<= 2.23
Search vendor "Buffalo" for product "Wbr-b11 Firmware" and version " <= 2.23"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr-b11
Search vendor "Buffalo" for product "Wbr-b11"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr-g54 Firmware
Search vendor "Buffalo" for product "Wbr-g54 Firmware"
<= 2.23
Search vendor "Buffalo" for product "Wbr-g54 Firmware" and version " <= 2.23"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr-g54
Search vendor "Buffalo" for product "Wbr-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wbr-g54l Firmware
Search vendor "Buffalo" for product "Wbr-g54l Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wbr-g54l Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wbr-g54l
Search vendor "Buffalo" for product "Wbr-g54l"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr2-a54g54 Firmware
Search vendor "Buffalo" for product "Whr2-a54g54 Firmware"
<= 2.25
Search vendor "Buffalo" for product "Whr2-a54g54 Firmware" and version " <= 2.25"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr2-a54g54
Search vendor "Buffalo" for product "Whr2-a54g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr2-g54 Firmware
Search vendor "Buffalo" for product "Whr2-g54 Firmware"
<= 2.23
Search vendor "Buffalo" for product "Whr2-g54 Firmware" and version " <= 2.23"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr2-g54
Search vendor "Buffalo" for product "Whr2-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr2-g54v Firmware
Search vendor "Buffalo" for product "Whr2-g54v Firmware"
<= 2.55
Search vendor "Buffalo" for product "Whr2-g54v Firmware" and version " <= 2.55"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr2-g54v
Search vendor "Buffalo" for product "Whr2-g54v"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr3-ag54 Firmware
Search vendor "Buffalo" for product "Whr3-ag54 Firmware"
<= 2.23
Search vendor "Buffalo" for product "Whr3-ag54 Firmware" and version " <= 2.23"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr3-ag54
Search vendor "Buffalo" for product "Whr3-ag54"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr-g54 Firmware
Search vendor "Buffalo" for product "Whr-g54 Firmware"
<= 2.16
Search vendor "Buffalo" for product "Whr-g54 Firmware" and version " <= 2.16"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr-g54
Search vendor "Buffalo" for product "Whr-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Whr-g54-nf Firmware
Search vendor "Buffalo" for product "Whr-g54-nf Firmware"
<= 2.10
Search vendor "Buffalo" for product "Whr-g54-nf Firmware" and version " <= 2.10"
-
Affected
in Buffalo
Search vendor "Buffalo"
Whr-g54-nf
Search vendor "Buffalo" for product "Whr-g54-nf"
--
Safe
Buffalo
Search vendor "Buffalo"
Wla2-g54 Firmware
Search vendor "Buffalo" for product "Wla2-g54 Firmware"
<= 2.24
Search vendor "Buffalo" for product "Wla2-g54 Firmware" and version " <= 2.24"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wla2-g54
Search vendor "Buffalo" for product "Wla2-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wla2-g54c Firmware
Search vendor "Buffalo" for product "Wla2-g54c Firmware"
<= 2.24
Search vendor "Buffalo" for product "Wla2-g54c Firmware" and version " <= 2.24"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wla2-g54c
Search vendor "Buffalo" for product "Wla2-g54c"
--
Safe
Buffalo
Search vendor "Buffalo"
Wla-b11 Firmware
Search vendor "Buffalo" for product "Wla-b11 Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wla-b11 Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wla-b11
Search vendor "Buffalo" for product "Wla-b11"
--
Safe
Buffalo
Search vendor "Buffalo"
Wla-g54 Firmware
Search vendor "Buffalo" for product "Wla-g54 Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wla-g54 Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wla-g54
Search vendor "Buffalo" for product "Wla-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wla-g54c Firmware
Search vendor "Buffalo" for product "Wla-g54c Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wla-g54c Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wla-g54c
Search vendor "Buffalo" for product "Wla-g54c"
--
Safe
Buffalo
Search vendor "Buffalo"
Wlah-a54g54 Firmware
Search vendor "Buffalo" for product "Wlah-a54g54 Firmware"
<= 2.54
Search vendor "Buffalo" for product "Wlah-a54g54 Firmware" and version " <= 2.54"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wlah-a54g54
Search vendor "Buffalo" for product "Wlah-a54g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wlah-am54g54 Firmware
Search vendor "Buffalo" for product "Wlah-am54g54 Firmware"
<= 2.54
Search vendor "Buffalo" for product "Wlah-am54g54 Firmware" and version " <= 2.54"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wlah-am54g54
Search vendor "Buffalo" for product "Wlah-am54g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wlah-g54 Firmware
Search vendor "Buffalo" for product "Wlah-g54 Firmware"
<= 2.54
Search vendor "Buffalo" for product "Wlah-g54 Firmware" and version " <= 2.54"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wlah-g54
Search vendor "Buffalo" for product "Wlah-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli2-tx1-ag54 Firmware
Search vendor "Buffalo" for product "Wli2-tx1-ag54 Firmware"
<= 2.53
Search vendor "Buffalo" for product "Wli2-tx1-ag54 Firmware" and version " <= 2.53"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli2-tx1-ag54
Search vendor "Buffalo" for product "Wli2-tx1-ag54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli2-tx1-amg54 Firmware
Search vendor "Buffalo" for product "Wli2-tx1-amg54 Firmware"
<= 2.53
Search vendor "Buffalo" for product "Wli2-tx1-amg54 Firmware" and version " <= 2.53"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli2-tx1-amg54
Search vendor "Buffalo" for product "Wli2-tx1-amg54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli2-tx1-g54 Firmware
Search vendor "Buffalo" for product "Wli2-tx1-g54 Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wli2-tx1-g54 Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli2-tx1-g54
Search vendor "Buffalo" for product "Wli2-tx1-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli3-tx1-amg54 Firmware
Search vendor "Buffalo" for product "Wli3-tx1-amg54 Firmware"
<= 2.53
Search vendor "Buffalo" for product "Wli3-tx1-amg54 Firmware" and version " <= 2.53"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli3-tx1-amg54
Search vendor "Buffalo" for product "Wli3-tx1-amg54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli3-tx1-g54 Firmware
Search vendor "Buffalo" for product "Wli3-tx1-g54 Firmware"
<= 2.53
Search vendor "Buffalo" for product "Wli3-tx1-g54 Firmware" and version " <= 2.53"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli3-tx1-g54
Search vendor "Buffalo" for product "Wli3-tx1-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli-t1-b11 Firmware
Search vendor "Buffalo" for product "Wli-t1-b11 Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wli-t1-b11 Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli-t1-b11
Search vendor "Buffalo" for product "Wli-t1-b11"
--
Safe
Buffalo
Search vendor "Buffalo"
Wli-tx1-g54 Firmware
Search vendor "Buffalo" for product "Wli-tx1-g54 Firmware"
<= 2.20
Search vendor "Buffalo" for product "Wli-tx1-g54 Firmware" and version " <= 2.20"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wli-tx1-g54
Search vendor "Buffalo" for product "Wli-tx1-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wvr-g54-nf Firmware
Search vendor "Buffalo" for product "Wvr-g54-nf Firmware"
<= 2.02
Search vendor "Buffalo" for product "Wvr-g54-nf Firmware" and version " <= 2.02"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wvr-g54-nf
Search vendor "Buffalo" for product "Wvr-g54-nf"
--
Safe
Buffalo
Search vendor "Buffalo"
Wzr-g108 Firmware
Search vendor "Buffalo" for product "Wzr-g108 Firmware"
<= 2.41
Search vendor "Buffalo" for product "Wzr-g108 Firmware" and version " <= 2.41"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wzr-g108
Search vendor "Buffalo" for product "Wzr-g108"
--
Safe
Buffalo
Search vendor "Buffalo"
Wzr-g54 Firmware
Search vendor "Buffalo" for product "Wzr-g54 Firmware"
<= 2.41
Search vendor "Buffalo" for product "Wzr-g54 Firmware" and version " <= 2.41"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wzr-g54
Search vendor "Buffalo" for product "Wzr-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wzr-hp-g54 Firmware
Search vendor "Buffalo" for product "Wzr-hp-g54 Firmware"
<= 2.41
Search vendor "Buffalo" for product "Wzr-hp-g54 Firmware" and version " <= 2.41"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wzr-hp-g54
Search vendor "Buffalo" for product "Wzr-hp-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wzr-rs-g54 Firmware
Search vendor "Buffalo" for product "Wzr-rs-g54 Firmware"
<= 2.55
Search vendor "Buffalo" for product "Wzr-rs-g54 Firmware" and version " <= 2.55"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wzr-rs-g54
Search vendor "Buffalo" for product "Wzr-rs-g54"
--
Safe
Buffalo
Search vendor "Buffalo"
Wzr-rs-g54hp Firmware
Search vendor "Buffalo" for product "Wzr-rs-g54hp Firmware"
<= 2.55
Search vendor "Buffalo" for product "Wzr-rs-g54hp Firmware" and version " <= 2.55"
-
Affected
in Buffalo
Search vendor "Buffalo"
Wzr-rs-g54hp
Search vendor "Buffalo" for product "Wzr-rs-g54hp"
--
Safe