CVE Database
/

CVE-2023-49695

Back to search

CVE-2023-49695

Published: Dec 12, 2023

Modified: Oct 8, 2024

PUBLISHED

Description

OS command injection vulnerability in WRC-X3000GSN v1.0.2, WRC-X3000GS v1.0.24 and earlier, and WRC-X3000GSA v1.0.24 and earlier allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command by sending a specially crafted request to the product.

VendorProductVersions

ELECOM CO.,LTD.

WRC-X3000GSN

affected
v1.0.2

ELECOM CO.,LTD.

WRC-X3000GS

affected
v1.0.24 and earlier

ELECOM CO.,LTD.

WRC-X3000GSA

affected
v1.0.24 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now