CVE-2015-8262 Information
Feb 14, 2021
cve
Description
Buffalo WZR-600DHP2 devices with firmware 2.09 2.13 and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query which makes it easier for remote attackers to spoof responses by predicting this value.
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N
Reference
http://www.securityfocus.com/bid/78877 https://www.kb.cert.org/vuls/id/646008
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
CHANGED
Integrity Impact
NONE
Availability Impact
HIGH
Base Score
NONE
Base Severity
6.8
Share on: