Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product with an administrative privilege, the user may be directed to perform unintended operations such as changing the login ID, login password, etc.
Metrics
Affected Vendors & Products
References
History
Sun, 27 Oct 2024 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 23 Aug 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom
Elecom wrc-2533gs2-b Elecom wrc-2533gs2-b Firmware Elecom wrc-2533gs2-w Elecom wrc-2533gs2-w Firmware Elecom wrc-2533gs2v-b Elecom wrc-2533gs2v-b Firmware Elecom wrc-x1500gs-b Elecom wrc-x1500gs-b Firmware Elecom wrc-x1500gsa-b Elecom wrc-x1500gsa-b Firmware Elecom wrc-x6000xs-g Elecom wrc-x6000xs-g Firmware |
|
Weaknesses | CWE-352 | |
CPEs | cpe:2.3:h:elecom:wrc-2533gs2-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2-w:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2v-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x1500gs-b:*:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x1500gsa-b:*:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x6000xs-g:-:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2-w_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2v-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x6000xs-g_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Elecom
Elecom wrc-2533gs2-b Elecom wrc-2533gs2-b Firmware Elecom wrc-2533gs2-w Elecom wrc-2533gs2-w Firmware Elecom wrc-2533gs2v-b Elecom wrc-2533gs2v-b Firmware Elecom wrc-x1500gs-b Elecom wrc-x1500gs-b Firmware Elecom wrc-x1500gsa-b Elecom wrc-x1500gsa-b Firmware Elecom wrc-x6000xs-g Elecom wrc-x6000xs-g Firmware |
|
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-08-01T01:18:01.801Z
Updated: 2024-10-27T01:09:06.684Z
Reserved: 2024-07-26T08:52:14.749Z
Link: CVE-2024-40883
Vulnrichment
Updated: 2024-08-01T14:25:05.256Z
NVD
Status : Modified
Published: 2024-08-01T02:15:02.023
Modified: 2024-10-27T01:35:12.100
Link: CVE-2024-40883
Redhat
No data.