CVE Published: 26/12/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: jpcert |
Vendor: BUFFALO INC. |
Product: VR-S1000 Status : PUBLISHED
CVE-2023-46681 Description
Improper neutralization of argument delimiters in a command (\'Argument Injection\') vulnerability in VR-S1000 firmware Ver. 2.37 and earlier allows an authenticated attacker who can access to the product\'s command line interface to execute an arbitrary command.