← Back

CVE-2011-1324

nvd nist
Published: May 9, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.8
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:P
Exploitability: 8.6 / Impact: 4.9
Source: NVD

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in the management screen on Buffalo WHR, WZR2, WZR, WER, and BBR series routers with firmware 1.x; BHR-4RV and FS-G54 routers with firmware 2.x; and AS-100 routers allow remote attackers to hijack the authentication of administrators for requests that modify settings, as demonstrated by changing the login password.

Affected (118)

43 products
As 100
Bbr 4hg
Bbr 4hg Firmware
Bbr 4mg
Bbr 4mg Firmware
Bhr 4rv
Bhr 4rv Firmware
Fs G54
Fs G54 Firmware
Wer A54g54
Wer A54g54 Firmware
Wer Ag54
Wer Ag54 Firmware
Wer Am54g54
Wer Am54g54 Firmware
Wer Amg54
Wer Amg54 Firmware
Whr Am54g54
Whr Am54g54 Firmware
Whr Amg54
Whr Amg54 Firmware
Whr Ampg
Whr Ampg Firmware
Whr G
Whr G54s
Whr G54s Firmware
Whr G Firmware
Whr Hp Ampg
Whr Hp Ampg Firmware
Whr Hp G
Whr Hp G54
Whr Hp G54 Firmware
Whr Hp G Firmware
Wzr Ampg144nh
Wzr Ampg144nh Firmware
Wzr Ampg300nh
Wzr Ampg300nh Firmware
Wzr G144n
Wzr G144n Firmware
Wzr G144nh
Wzr G144nh Firmware
Wzr2 G300n
Wzr2 G300n Firmware
Configuration A
118 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
Buffalotech
Version 1.02
Version 1.04
Version 1.04 beta
Version 1.10
Version 1.10 beta
Version 1.11 beta
Version 1.12
Version 1.20
Version 1.20 beta
Version 1.30
Version 1.30 beta
Version 1.31
Version 1.32
Version 1.32 beta
Version 1.33 beta
All versions
Buffalotech
Version 1.00
Version 1.01 beta
Version 1.03
Version 1.04
Version 1.04 beta
Version 1.10
Version 1.10 beta
Version 1.11 beta
Version 1.12
Version 1.20
Version 1.20 beta
Version 1.30
Version 1.30 beta
Version 1.31
Version 1.32
Version 1.32 beta
Version 1.33
Version 1.33 beta
All versions
Buffalotech
Version 2.31
Version 2.32 prebeta
Version 2.33 prebeta
Version 2.42
Version 2.46
Version 2.48
All versions
Version 2.07
All versions
Buffalotech
Version 1.00
Version 1.01 beta
Version 1.02
Version 1.03
Version 1.10
Version 1.12
Version 1.12 beta
Version 1.13
All versions
Buffalotech
Version 1.04
Version 1.12
Version 1.12 beta
All versions
Buffalotech
Version 1.11
Version 1.12
Version 1.12 beta
Version 1.13
Version 1.14
All versions
Buffalotech
Version 1.11
Version 1.12
Version 1.14
All versions
Buffalotech
Version 1.30
Version 1.38
Version 1.40
Version 1.42
All versions
Buffalotech
Version 1.31
Version 1.38
Version 1.40
Version 1.42
All versions
Version 1.46
All versions
All versions
Buffalotech
Version 1.20
Version 1.21
Version 1.23
Version 1.38
Version 1.40
Version 1.42
Version 1.46
All versions
Version 1.32
All versions
All versions
Buffalotech
Version 1.20
Version 1.21
Version 1.23
Version 1.38
Version 1.40
Version 1.42
Version 1.46
All versions
Buffalotech
Version 1.47
Version 1.48 beta
All versions
Version 1.48
All versions
Buffalotech
Version 1.45
Version 1.46 beta
Version 1.47
Version 1.47 beta
All versions
Buffalotech
Version 1.45
Version 1.47
Version 1.47 beta
Version 1.48
All versions
Buffalotech
Version 1.48
Version 1.50 beta

References (4)

Source: vultures@jpcert.or.jp
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.