ELECOM Wireless LAN Access Points Stack-Based Buffer Overflow Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A stack-based buffer overflow vulnerability has been identified in certain ELECOM wireless LAN access point devices. This vulnerability allows for arbitrary code execution when a crafted packet is received. Affected models include the WAB-S733IW2-PD, WAB-S733IW-AC, WAB-S300IW2-PD, WAB-S300IW-AC, and WAB-S300IW-PD, all running version 5.5.00 or earlier. Additionally, the WRC-X1500GS-B and WRC-X1500GSA-B routers, both with versions through 1.12, are vulnerable.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected device.

Remediation

Users are advised to update the firmware to the latest version available for their specific model. For the WAB-S733IW2-PD and WAB-S300IW-PD models, which are no longer supported, it is recommended to stop using these devices.

Added: Feb 3, 2026, 7:20 AM
Updated: Feb 3, 2026, 7:20 AM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
7.5
exploitability
6.4
remediation
8.3
relevance
2.7
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.