ELECOM WRC-X1500GS-B
cpe:2.3:h:elecom:wrc-x1500gs-b:*:*:*:*:*:*:*, +1 more
- <= 1.12
A command injection vulnerability has been identified in ELECOM wireless LAN routers WRC-X1500GS-B and WRC-X1500GSA-B, both running firmware version 1.12 or earlier. This vulnerability allows a logged-in user to execute arbitrary operating system commands by sending a crafted request.
Exploitation of this vulnerability allows for arbitrary OS command execution by a logged-in user.
Users are advised to update the firmware to version 1.13 or later. After updating, change the passwords for the admin page and Wi-Fi connection to strong, hard-to-guess ones.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.