CVE-2024-44072: Buffalo Inc Wex-1166dhp

Medium severity, CVSS 5.7. EPSS: 0.6% chance of exploitation in the next 30 days.

OS command injection vulnerability exists in BUFFALO wireless LAN routers and wireless LAN repeaters. If a user logs in to the management page and sends a specially crafted request to the affected product from the product's specific management page, an arbitrary OS command may be executed.

Affected products

Published 2024-09-10. Last modified 2026-06-17.