Buffalo
Buffalo LinkStation 220: aging firmware and known CVEs
The LinkStation 220 runs on aging Buffalo firmware that no longer receives regular security updates. Several CVEs are documented without patches.
- Risk level
- High risk
- Category
- NAS and storage
- Last reviewed
- 2026-05-23
- Confidence
- medium
Support status
Check Buffalo support status for the LS220D: firmware is no longer actively maintained.
Typical symptoms
- Firmware on old version without available update
- NAS exposed on the Internet without firewall
- Unencrypted HTTP admin interface
Fixes to try
- Apply the latest available Buffalo firmware
- Disable direct Internet access
- Back up data to external drive