Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary command by sending a specially crafted request to the web management page. Affected products and versions are as follows: WRC-1167GHBK3-A v1.24 and earlier, WRC-1167FEBK-A v1.18 and earlier, WRC-F1167ACF2 all versions, WRC-600GHBK-A all versions, WRC-733FEBK2-A all versions, WRC-1467GHBK-A all versions, WRC-1900GHBK-A all versions, and LAN-W301NR all versions.
Metrics
Affected Vendors & Products
References
History
Wed, 06 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom lan-w301nr
Elecom wrc-1467ghbk-a Elecom wrc-1900ghbk-a Elecom wrc-600ghbk-a Elecom wrc-733febk2-a Elecom wrc-f1167acf2 |
|
CPEs | cpe:2.3:h:elecom:lan-w301nr:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1467ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-1900ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-600ghbk-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-733febk2-a:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-f1167acf2:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Elecom lan-w301nr
Elecom wrc-1467ghbk-a Elecom wrc-1900ghbk-a Elecom wrc-600ghbk-a Elecom wrc-733febk2-a Elecom wrc-f1167acf2 |
|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-11-06T18:19:31.073Z
Reserved: 2023-07-07T08:46:11.999Z
Link: CVE-2023-37566

Updated: 2024-08-02T17:16:31.016Z

Status : Modified
Published: 2023-07-13T02:15:09.517
Modified: 2024-11-21T08:11:57.690
Link: CVE-2023-37566

No data.