CVE-2024-26258
CVE-2024-26258
OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product.
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
ELECOM CO.,LTD. · WMC-2LX-BELECOM CO.,LTD. · WMC-X1800GST-BELECOM CO.,LTD. · WRC-1167GST2ELECOM CO.,LTD. · WRC-2533GST2ELECOM CO.,LTD. · WRC-G01-WELECOM CO.,LTD. · WRC-X3200GST3-BELECOM CO.,LTD. · WSC-X1800GS-BWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →