Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-23534 | OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product. |
Tue, 26 Nov 2024 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Elecom
Elecom wrc-g01-w Firmware Elecom wrc-x3200gst3-b Firmware |
|
| CPEs | cpe:2.3:o:elecom:wrc-g01-w_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:elecom:wrc-x3200gst3-b_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Elecom
Elecom wrc-g01-w Firmware Elecom wrc-x3200gst3-b Firmware |
|
| Metrics |
cvssV3_0
|
Mon, 09 Sep 2024 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OS command injection vulnerability in WRC-X3200GST3-B v1.25 and earlier, and WRC-G01-W v1.24 and earlier allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product. | OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product. |
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-05-12T08:10:53.382Z
Reserved: 2024-03-19T02:32:14.173Z
Link: CVE-2024-26258
Updated: 2024-08-02T00:07:19.139Z
Status : Deferred
Published: 2024-04-04T00:15:07.047
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-26258
No data.
OpenCVE Enrichment
No data.
EUVD