Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a remote unauthenticated attacker to execute an arbitrary command by sending a specially crafted request to a certain port of the web management page. Affected products and versions are as follows: WRC-1167GHBK3-A v1.24 and earlier, WRC-F1167ACF2 all versions, WRC-600GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-1467GHBK-A all versions, WRC-1900GHBK-A all versions, and LAN-W301NR all versions.
Metrics
Affected Vendors & Products
References
History
Wed, 06 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom lan-w301nr
Elecom wrc-1467ghbk-a Elecom wrc-1900ghbk-a Elecom wrc-600ghbk-a Elecom wrc-733febk2-a Elecom wrc-f1167acf2 |
|
CPEs | cpe:2.3:h:elecom:lan-w301nr:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1467ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1900ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-600ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-733febk2-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-f1167acf2:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Elecom lan-w301nr
Elecom wrc-1467ghbk-a Elecom wrc-1900ghbk-a Elecom wrc-600ghbk-a Elecom wrc-733febk2-a Elecom wrc-f1167acf2 |
|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2023-07-13T01:46:47.274Z
Updated: 2024-11-06T14:28:41.455Z
Reserved: 2023-07-07T08:46:11.999Z
Link: CVE-2023-37567
Vulnrichment
Updated: 2024-08-02T17:16:30.873Z
NVD
Status : Modified
Published: 2023-07-13T02:15:09.563
Modified: 2024-11-21T08:11:57.827
Link: CVE-2023-37567
Redhat
No data.