Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-8262

Опубликовано: 27 дек. 2015
Источник: nvd
CVSS3: 6.8
CVSS2: 5
EPSS Низкий

Описание

Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.09:*:*:*:*:*:*:*
cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.13:*:*:*:*:*:*:*
cpe:2.3:o:buffalotech:airstation_extreme_n600_firmware:2.16:*:*:*:*:*:*:*
cpe:2.3:h:buffalotech:airstation_extreme_n600:*:*:*:*:*:*:*:*

EPSS

Процентиль: 66%
0.00526
Низкий

6.8 Medium

CVSS3

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

CVSS3: 6.8
github
больше 3 лет назад

Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.

EPSS

Процентиль: 66%
0.00526
Низкий

6.8 Medium

CVSS3

5 Medium

CVSS2

Дефекты

NVD-CWE-Other