Vulnerability index

Browse CVEs

58 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wab Mat HIGH 7.3
CVE-2023-22282

WAB-MAT Ver.5.0.0.8 and earlier starts another program with an unquoted file path. Since a registered Windows service path contains spaces and are un…

Fix: 5.0.2.2+
Fix from $1,950 2023-04-11
Camera Assistant HIGH 7.8
CVE-2023-22368

Untrusted search path vulnerability in ELECOM Camera Assistant 1.00 and QuickFileDealer Ver.1.2.1 and earlier allows an attacker to gain privileges v…

Fix: after 1.2.1
Fix from $1,950 2023-02-15
Wrc 1167gst2 Firmware HIGH 8.8
CVE-2022-25915

Improper access control vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167G…

Fix: after 2.11
Fix from $1,950 2022-03-31
Wrc 300febk R Firmware MEDIUM 5.2
CVE-2022-21799

Cross-site scripting vulnerability in ELECOM LAN router WRC-300FEBK-R firmware v1.13 and earlier allows an attacker on the adjacent network to inject…

Fix: 1.16+
Fix from $1,600 2022-02-08
Wrh 300bk3 Firmware HIGH 8.8
CVE-2022-21173

Hidden functionality vulnerability in ELECOM LAN routers (WRH-300BK3 firmware v1.05 and earlier, WRH-300WH3 firmware v1.05 and earlier, WRH-300BK3-S …

Fix: after 1.05
Fix from $1,950 2022-02-08
Wrc 1167gst2 Firmware HIGH 8.8
CVE-2021-20860

Cross-site request forgery (CSRF) vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior,…

Fix: after 2.11
Fix from $1,950 2021-12-01
Wrc 1167gst2 Firmware HIGH 8.8
CVE-2021-20861

Improper access control vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167G…

Fix: after 2.11
Fix from $1,950 2021-12-01
Wrc 1167gst2 Firmware HIGH 8.8
CVE-2021-20864

Improper access control vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H…

Fix: after 2.11
Fix from $1,950 2021-12-01
Wrc 1167gst2 Firmware HIGH 8.0
CVE-2021-20859

ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmware v1.25 and prior, WRC-2533GS…

Fix: after 2.11
Fix from $1,950 2021-12-01
Wrc 1167gst2 Firmware HIGH 8.0
CVE-2021-20863

OS command injection vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H fi…

Fix: after 2.11
Fix from $1,950 2021-12-01
Wrh 733gbk Firmware MEDIUM 6.8
CVE-2021-20852

Buffer overflow vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a networ…

Fix: after 1.02.9
Fix from $1,600 2021-12-01
Wrh 733gbk Firmware MEDIUM 6.8
CVE-2021-20853

ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an admin…

Fix: after 1.02.9
Fix from $1,600 2021-12-01
Wrh 733gbk Firmware MEDIUM 6.8
CVE-2021-20854

ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-adjacent attacker with an admin…

Fix: after 1.02.9
Fix from $1,600 2021-12-01
Wrh 733gbk Firmware MEDIUM 5.4
CVE-2021-20855

Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a r…

Fix: after 1.02.9
Fix from $1,600 2021-12-01
Wrh 733gbk Firmware MEDIUM 5.4
CVE-2021-20856

Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a r…

Fix: after 1.02.9
Fix from $1,600 2021-12-01
Wrc 2533ghbk I Firmware MEDIUM 5.4
CVE-2021-20857

Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenticated attacker to inject an a…

Fix: after 1.20
Fix from $1,600 2021-12-01
Wrc 2533ghbk I Firmware MEDIUM 5.4
CVE-2021-20858

Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenticated attacker to inject an a…

Fix: after 1.20
Fix from $1,600 2021-12-01
Wrc 300febk Firmware HIGH 8.8
CVE-2021-20739

WRC-300FEBK, WRC-F300NF, WRC-733FEBK, WRH-300RD, WRH-300BK, WRH-300SV, WRH-300WH, WRH-H300WH, WRH-H300BK, WRH-300BK-S, and WRH-300WH-S all versions a…

Mitigation only
Fix from $1,950 2021-07-07
Wrc 1167fs W Firmware MEDIUM 6.5
CVE-2021-20738

WRC-1167FS-W, WRC-1167FS-B, and WRC-1167FSA all versions allow an unauthenticated network-adjacent attacker to obtain sensitive information via unspe…

Mitigation only
Fix from $1,600 2021-07-07
File Manager CRITICAL 9.1
CVE-2021-20651

Directory traversal vulnerability in ELECOM File Manager all versions allows remote attackers to create an arbitrary file or overwrite an existing fi…

Mitigation only
Fix from $2,300 2021-02-12
Wrc 300febk S Firmware MEDIUM 6.8
CVE-2021-20648

ELECOM WRC-300FEBK-S allows an attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.

Mitigation only
Fix from $1,600 2021-02-12
Wrc 300febk A Firmware MEDIUM 6.5
CVE-2021-20646

Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-A allows remote attackers to hijack the authentication of administrators and ex…

Mitigation only
Fix from $1,600 2021-02-12
Wrc 300febk S Firmware MEDIUM 6.5
CVE-2021-20647

Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-S allows remote attackers to hijack the authentication of administrators and ex…

Mitigation only
Fix from $1,600 2021-02-12
Ncc Ewf100rmwh2 Firmware MEDIUM 6.5
CVE-2021-20650

Cross-site request forgery (CSRF) vulnerability in ELECOM NCC-EWF100RMWH2 allows remote attackers to hijack the authentication of administrators and …

Mitigation only
Fix from $1,600 2021-02-12
Wrc 1467ghbk A Firmware MEDIUM 6.1
CVE-2021-20644

ELECOM WRC-1467GHBK-A allows arbitrary scripts to be executed on the user's web browser by displaying a specially crafted SSID on the web setup page.

Mitigation only
Fix from $1,600 2021-02-12
Wrc 300febk A Firmware MEDIUM 5.4
CVE-2021-20645

Cross-site scripting vulnerability in ELECOM WRC-300FEBK-A allows remote authenticated attackers to inject arbitrary script via unspecified vectors.

Mitigation only
Fix from $1,600 2021-02-12
Ld Ps\/u1 Firmware HIGH 7.5
CVE-2021-20643

Improper access control vulnerability in ELECOM LD-PS/U1 allows remote attackers to change the administrative password of the affected device by proc…

Mitigation only
Fix from $1,950 2021-02-12
Wrc 2533gst2 Firmware HIGH 8.8
CVE-2020-5634

ELECOM LAN routers (WRC-2533GST2 firmware versions prior to v1.14, WRC-1900GST2 firmware versions prior to v1.14, WRC-1750GST2 firmware versions prio…

Fix: 1.10 / 1.14+
Fix from $1,950 2020-10-06