Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product with an administrative privilege, the user may be directed to perform unintended operations such as changing the login ID, login password, etc.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_0
|
Sun, 27 Oct 2024 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 23 Aug 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Elecom
Elecom wrc-2533gs2-b Elecom wrc-2533gs2-b Firmware Elecom wrc-2533gs2-w Elecom wrc-2533gs2-w Firmware Elecom wrc-2533gs2v-b Elecom wrc-2533gs2v-b Firmware Elecom wrc-x1500gs-b Elecom wrc-x1500gs-b Firmware Elecom wrc-x1500gsa-b Elecom wrc-x1500gsa-b Firmware Elecom wrc-x6000xs-g Elecom wrc-x6000xs-g Firmware |
|
Weaknesses | CWE-352 | |
CPEs | cpe:2.3:h:elecom:wrc-2533gs2-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2-w:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-2533gs2v-b:-:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x1500gs-b:*:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x1500gsa-b:*:*:*:*:*:*:*:* cpe:2.3:h:elecom:wrc-x6000xs-g:-:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2-w_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-2533gs2v-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x1500gs-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x1500gsa-b_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x6000xs-g_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Elecom
Elecom wrc-2533gs2-b Elecom wrc-2533gs2-b Firmware Elecom wrc-2533gs2-w Elecom wrc-2533gs2-w Firmware Elecom wrc-2533gs2v-b Elecom wrc-2533gs2v-b Firmware Elecom wrc-x1500gs-b Elecom wrc-x1500gs-b Firmware Elecom wrc-x1500gsa-b Elecom wrc-x1500gsa-b Firmware Elecom wrc-x6000xs-g Elecom wrc-x6000xs-g Firmware |
|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-02-17T05:38:38.595Z
Reserved: 2024-07-26T08:52:14.749Z
Link: CVE-2024-40883

Updated: 2024-08-01T14:25:05.256Z

Status : Modified
Published: 2024-08-01T02:15:02.023
Modified: 2024-11-26T09:15:06.443
Link: CVE-2024-40883

No data.