ZeroHour

CVE-2022-21173

CVSS 3.1
8.8 high
EPSS
<1%p38
Published
()
Modified
Description

Hidden functionality vulnerability in ELECOM LAN routers (WRH-300BK3 firmware v1.05 and earlier, WRH-300WH3 firmware v1.05 and earlier, WRH-300BK3-S firmware v1.05 and earlier, WRH-300DR3-S firmware v1.05 and earlier, WRH-300LB3-S firmware v1.05 and earlier, WRH-300PN3-S firmware v1.05 and earlier, WRH-300WH3-S firmware v1.05 and earlier, and WRH-300YG3-S firmware v1.05 and earlier) allows an attacker on the adjacent network to execute an arbitrary OS command via unspecified vectors.

Vendors
elecom
Products
wrh-300bk3 firmware, wrh-300wh3 firmware, wrh-300bk3-s firmware, wrh-300wh3-s firmware, wrh-300lb3-s firmware, wrh-300pn3-s firmware, wrh-300yg3-s firmware, wrh-300dr3-s firmware
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.