OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary OS command with a root privilege by sending a specially crafted request. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, and WRC-1167FEBK-A v1.18 and earlier.
History

Wed, 06 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2023-07-13T03:01:41.200Z

Updated: 2024-11-06T15:24:49.122Z

Reserved: 2023-07-07T08:46:11.998Z

Link: CVE-2023-37564

cve-icon Vulnrichment

Updated: 2024-08-02T17:16:30.810Z

cve-icon NVD

Status : Modified

Published: 2023-07-13T04:15:10.213

Modified: 2024-11-21T08:11:57.410

Link: CVE-2023-37564

cve-icon Redhat

No data.