ELECOM WRC-BE72XSD-B
cpe:2.3:h:elecom:wrc-x1800gsa-b:*:*:*:*:*:*:*, +13 more
- <= 1.19
- <= 1.09
- <= 1.14
- <= 1.12
- <= 1.16
- <= 1.13
A command injection vulnerability has been identified in ELECOM wireless LAN access point devices. This vulnerability arises from improper handling of the 'ping_ip_addr' parameter, allowing logged-in users to execute arbitrary OS commands by sending crafted requests. The issue affects multiple access point models and versions.
Exploitation of this vulnerability allows for arbitrary OS command execution on the affected device.
Users are advised to update the firmware to the latest version. Specific update instructions can be found on the ELECOM website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.