OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-86530

HIGH · CVSS 7.2 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-09-28 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

Certain BUFFALO Wi-Fi products are vulnerable due to improper handling of web form input, allowing an administrative user to craft malicious HTTP requests that can execute arbitrary OS commands. This vulnerability poses a significant risk as it could lead to unauthorized command execution on the device, potentially compromising its integrity. Organizations using these products should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-86530
Severity
HIGH
CVSS
7.2
EPSS
0.36%

Original NVD Description

BUFFALO Wi-Fi products handle some web form input improperly to assemble command line strings internally. An administrative user may send a crafted HTTP request and execute an arbitrary OS command.