Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-25579

Опубликовано: 28 фев. 2024
Источник: nvd
CVSS3: 6.8
CVSS3: 6.8
EPSS Низкий

Описание

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to the product. Note that WMC-X1800GST-B is also included in e-Mesh Starter Kit "WMC-2LX-B".

EPSS

Процентиль: 36%
0.00152
Низкий

6.8 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 6.8
github
почти 2 года назад

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by sending a specially crafted request to the product. Affected products and versions are as follows: WRC-1167GS2-B v1.67 and earlier, WRC-1167GS2H-B v1.67 and earlier, WRC-2533GS2-B v1.62 and earlier, WRC-2533GS2-W v1.62 and earlier, and WRC-2533GS2V-B v1.62 and earlier.

EPSS

Процентиль: 36%
0.00152
Низкий

6.8 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-78