Description
OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary OS command with a root privilege by sending a specially crafted request. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, and WRC-1167FEBK-A v1.18 and earlier.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41450 | OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary OS command with a root privilege by sending a specially crafted request. Affected products and versions are as follows: WRC-1167GHBK-S v1.03 and earlier, WRC-1167GEBK-S v1.03 and earlier, WRC-1167FEBK-S v1.04 and earlier, WRC-1167GHBK3-A v1.24 and earlier, and WRC-1167FEBK-A v1.18 and earlier. |
References
History
Wed, 06 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Elecom
Subscribe
Wrc-1167febk-a
Subscribe
Wrc-1167febk-a Firmware
Subscribe
Wrc-1167febk-s
Subscribe
Wrc-1167febk-s Firmware
Subscribe
Wrc-1167gebk-s
Subscribe
Wrc-1167gebk-s Firmware
Subscribe
Wrc-1167ghbk-s
Subscribe
Wrc-1167ghbk-s Firmware
Subscribe
Wrc-1167ghbk3-a
Subscribe
Wrc-1167ghbk3-a Firmware
Subscribe
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-06T15:24:49.122Z
Reserved: 2023-07-07T08:46:11.998Z
Link: CVE-2023-37564
Updated: 2024-08-02T17:16:30.810Z
Status : Modified
Published: 2023-07-13T04:15:10.213
Modified: 2024-11-21T08:11:57.410
Link: CVE-2023-37564
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD