cvedb.io
CVE-2015-8262
MEDIUM · CVSS 6.8
EPSS exploitation probability: 0%
Published 2015-12-27T03:59:04.973 · Last modified 2026-06-17T00:34:13.857

Summary

Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.

Affected products

buffalotech — airstation_extreme_n600_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when buffalotech ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.