CVE-2025-46413: Buffalo Inc Wsr-1800ax4
Medium severity, CVSS 5.3. EPSS: 0.1% chance of exploitation in the next 30 days.
Use of password hash with insufficient computational effort issue exists in BUFFALO Wi-Fi router 'WSR-1800AX4 series'. When WPS is enabled, PIN code and/or Wi-Fi password may be obtained by an attacker.
Affected products
- Buffalo Inc Wsr-1800ax4: before 1.09 (fixed in 1.09)
- Buffalo Inc Wsr-1800ax4-Kh: before 1.19 (fixed in 1.19)
- Buffalo Inc Wsr-1800ax4b: before 1.11 (fixed in 1.11)
- Buffalo Inc Wsr-1800ax4s: before 1.11 (fixed in 1.11)
Published 2025-11-07. Last modified 2026-06-17.