Back to search
CVE-2023-49695
Published: Dec 12, 2023
Modified: Oct 8, 2024
PUBLISHED
Description
OS command injection vulnerability in WRC-X3000GSN v1.0.2, WRC-X3000GS v1.0.24 and earlier, and WRC-X3000GSA v1.0.24 and earlier allows a network-adjacent attacker with an administrative privilege to execute an arbitrary OS command by sending a specially crafted request to the product.
| Vendor | Product | Versions |
|---|---|---|
ELECOM CO.,LTD. | WRC-X3000GSN | affected v1.0.2 |
ELECOM CO.,LTD. | WRC-X3000GS | affected v1.0.24 and earlier |
ELECOM CO.,LTD. | WRC-X3000GSA | affected v1.0.24 and earlier |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now