CVE-2023-40069
—CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description
OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WRC-F1167ACF all versions, WRC-1750GHBK all versions, WRC-1167GHBK2 all versions, WRC-1750GHBK2-I all versions, and WRC-1750GHBK-E all versions.
- Vendors
- elecom
- Products
- wrc-f1167acf firmware, wrc-1750ghbk firmware, wrc-1167ghbk2 firmware, wrc-1750ghbk2-i firmware, wrc-1750ghbk-e firmware
- Weakness
- CWE-78
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.