CVE-2017-2126: Buffalo Wapm-1166d Firmware

Critical severity, CVSS 9.8. EPSS: 4% chance of exploitation in the next 30 days.

WAPM-1166D firmware Ver.1.2.7 and earlier, WAPM-APG600H firmware Ver.1.16.1 and earlier allows remote attackers to bypass authentication and access the configuration interface via unspecified vectors.

Affected products

  • Buffalo Wapm-1166d Firmware: up to and including 1.2.7
  • Buffalo Wapm-APG600H Firmware: up to and including 1.16.1

Published 2017-07-22. Last modified 2026-06-17.