Vulnerability index

Browse CVEs

58 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wab S300iw Pd Firmware CRITICAL 9.8
CVE-2026-24465

Stack-based buffer overflow vulnerability exists in ELECOM wireless LAN access point devices. A crafted packet may lead to arbitrary code execution.

Fix: 1.13 / 5.5.02+
Fix from $2,300 2026-02-03
Wrc X1500gsa B Firmware HIGH 8.8
CVE-2026-22550

OS command injection vulnerability exists in ELECOM wireless LAN products. A crafted request from a logged-in user may lead to an arbitrary OS comman…

Fix: after 1.13
Fix from $1,950 2026-02-03
Wab I1750 Ps Firmware CRITICAL 9.8
CVE-2024-43689

Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may…

Fix: after 1.5.10
Fix from $2,300 2024-10-21
Wab S1167 Ps Firmware MEDIUM 6.1
CVE-2024-42412

Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processing of input values in menu.cgi. If a user views a …

Fix: after 1.5.10
Fix from $1,600 2024-08-30
Wrc X3000gs2 B Firmware MEDIUM 6.1
CVE-2024-34577

Cross-site scripting vulnerability exists in WRC-X3000GS2-B, WRC-X3000GS2-W, WRC-X3000GS2A-B and WRC-X3000GST2-B due to improper processing of input …

Fix: after 1.08
Fix from $1,600 2024-08-30
Wrc 2533gs2 B Firmware HIGH 8.8
CVE-2024-40883

Cross-site request forgery vulnerability exists in ELECOM wireless LAN routers. Viewing a malicious page while logging in to the affected product wit…

Fix: 1.12 / 1.69+
Fix from $1,950 2024-08-01
Wrc 1167gs2 B Firmware HIGH 8.8
CVE-2024-23910

Cross-site request forgery (CSRF) vulnerability in ELECOM wireless LAN routers and wireless LAN repeater allows a remote unauthenticated attacker to …

Fix: 1.27 / 1.31+
Fix from $1,950 2024-02-28
Wrc X1800gs B Firmware MEDIUM 6.8
CVE-2024-22372

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to execute arbi…

Fix: 1.14 / 1.18+
Fix from $1,600 2024-01-24
Wrc X3000gsn Firmware MEDIUM 6.8
CVE-2023-49695

OS command injection vulnerability in WRC-X3000GSN v1.0.2, WRC-X3000GS v1.0.24 and earlier, and WRC-X3000GSA v1.0.24 and earlier allows a network-adj…

Fix: after 1.0.24
Fix from $1,600 2023-12-12
Wrc 2533ghbk2 T Firmware MEDIUM 6.5
CVE-2023-43757

Inadequate encryption strength vulnerability in multiple routers provided by ELECOM CO.,LTD. and LOGITEC CORPORATION allows a network-adjacent unauth…

Mitigation only
Fix from $1,600 2023-11-16
Wrc X3000gs2 W Firmware HIGH 8.0
CVE-2023-43752

OS command injection vulnerability in WRC-X3000GS2-W v1.05 and earlier, WRC-X3000GS2-B v1.05 and earlier, and WRC-X3000GS2A-B v1.05 and earlier allow…

Fix: after 1.05
Fix from $1,950 2023-11-16
Wrc X1800gs B Firmware CRITICAL 9.8
CVE-2023-39454

Buffer overflow vulnerability exists in ELECOM wireless LAN routers, which may allow an unauthenticated attacker to execute arbitrary code.

Fix: after 1.13
Fix from $2,300 2023-08-18
Wrc F1167acf Firmware CRITICAL 9.8
CVE-2023-40069

OS command injection vulnerability in ELECOM wireless LAN routers allows an attacker who can access the product to execute an arbitrary OS command by…

Mitigation only
Fix from $2,300 2023-08-18
Wrc 1467ghbk A Firmware HIGH 8.8
CVE-2023-39445

Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an unauthenticated attacker to execute arbitr…

Mitigation only
Fix from $1,950 2023-08-18
Wrc 600ghbk A Firmware HIGH 8.8
CVE-2023-39455

OS command injection vulnerability in ELECOM wireless LAN routers allows an authenticated user to execute an arbitrary OS command by sending a specia…

Mitigation only
Fix from $1,950 2023-08-18
Wrc F1167acf Firmware HIGH 8.8
CVE-2023-39944

OS command injection vulnerability in WRC-F1167ACF all versions, and WRC-1750GHBK all versions allows an attacker who can access the product to execu…

Mitigation only
Fix from $1,950 2023-08-18
Wab S600 Ps Firmware HIGH 8.8
CVE-2023-40072

OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command by sen…

Mitigation only
Fix from $1,950 2023-08-18
Lan W451ngr Firmware HIGH 8.8
CVE-2023-38132

LAN-W451NGR all versions provided by LOGITEC CORPORATION contains an improper access control vulnerability, which allows an unauthenticated attacker …

Mitigation only
Fix from $1,950 2023-08-18
Lan Wh300n\/re Firmware HIGH 8.0
CVE-2023-38576

Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an authenticated user to execute arbitrary OS…

Mitigation only
Fix from $1,950 2023-08-18
Lan Wh300andgpe Firmware CRITICAL 9.8
CVE-2023-35991

Hidden functionality vulnerability in LOGITEC wireless LAN routers allows an unauthenticated attacker to log in to the product's certain management c…

Mitigation only
Fix from $2,300 2023-08-18
Lan W300n\/rs Firmware CRITICAL 9.8
CVE-2023-32626

Hidden functionality vulnerability in LAN-W300N/RS all versions, and LAN-W300N/PR5 all versions allows an unauthenticated attacker to log in to the p…

Mitigation only
Fix from $2,300 2023-08-18
Wrc 1167ghbk S Firmware HIGH 8.0
CVE-2023-37564

OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary OS command…

Fix: after 1.24
Fix from $1,950 2023-07-13
Wrc 1167ghbk S Firmware HIGH 8.0
CVE-2023-37565

Code injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute arbitrary code by sending a s…

Fix: after 1.24
Fix from $1,950 2023-07-13
Wtc C1167gc B Firmware HIGH 8.8
CVE-2023-37562

Cross-site request forgery (CSRF) vulnerability in exists in WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 and earlier. If a user views a …

Fix: after 1.17
Fix from $1,950 2023-07-13
Wrc 1167ghbk S Firmware MEDIUM 6.5
CVE-2023-37563

ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthorized attacker to obtain sensiti…

Fix: after 1.24
Fix from $1,600 2023-07-13
Wrc 1167ghbk3 A Firmware CRITICAL 9.8
CVE-2023-37567

Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a remote unauthenticated attacker to execute an arbitrary command b…

Fix: after 1.24
Fix from $2,300 2023-07-13
Wrc 1167ghbk3 A Firmware HIGH 8.0
CVE-2023-37566

Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary c…

Fix: after 1.24
Fix from $1,950 2023-07-13
Wrc 1167ghbk S Firmware HIGH 8.0
CVE-2023-37568

ELECOM wireless LAN routers WRC-1167GHBK-S v1.03 and earlier, and WRC-1167GEBK-S v1.03 and earlier allow a network-adjacent authenticated attacker to…

Fix: after 1.03
Fix from $1,950 2023-07-13
Wrh 300wh H Firmware MEDIUM 6.1
CVE-2023-37560

Cross-site scripting vulnerability in WRH-300WH-H v2.12 and earlier, and WTC-300HWH v1.09 and earlier allows a remote unauthenticated attacker to inj…

Fix: after 2.12
Fix from $1,600 2023-07-13
Wrh 300wh H Firmware MEDIUM 6.1
CVE-2023-37561

Open redirect vulnerability in ELECOM wireless LAN routers and ELECOM wireless LAN repeaters allows a remote unauthenticated attacker to redirect use…

Fix: after 2.12
Fix from $1,600 2023-07-13