Elecom Co Ltd Wab-I1750-Ps vulnerabilities
6 known vulnerabilities affecting elecom_co_ltd/wab-i1750-ps.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2MEDIUM2LOW1
Vulnerabilities
Page 1 of 1
CVE-2023-40072P2HIGHCVSS 8.8vv1.5.10 and earlier2023-08-18
CVE-2023-40072 [HIGH] CWE-78 CVE-2023-40072: OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticat
OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request.
nvd
CVE-2026-61376P2HIGHCVSS 8.6≤ v2.0.52026-07-28
CVE-2026-61376 [HIGH] CWE-78 CVE-2026-61376: ELECOM wireless LAN routers and access points devices contain an OS Command Injection vulnerability
ELECOM wireless LAN routers and access points devices contain an OS Command Injection vulnerability in Restore Settings. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
nvd
CVE-2024-43689P3CRITICALCVSS 9.8vv1.5.10 and earlier2024-10-21
CVE-2024-43689 [CRITICAL] CWE-121 CVE-2024-43689: Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a s
Stack-based buffer overflow vulnerability exists in ELECOM wireless access points. By processing a specially crafted HTTP request, arbitrary code may be executed.
nvd
CVE-2024-42412P4MEDIUMCVSS 6.1vv1.5.10 and earlier2024-08-30
CVE-2024-42412 [MEDIUM] CWE-79 CVE-2024-42412: Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processin
Cross-site scripting vulnerability exists in ELECOM wireless access points due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the product, an arbitrary script may be executed on the user's web browser.
nvd
CVE-2026-44387P4MEDIUMCVSS 5.1≤ v2.0.52026-07-28
CVE-2026-44387 [MEDIUM] CWE-79 CVE-2026-44387: ELECOM wireless LAN routers and access points devices contain a reflected cross-site scripting vulne
ELECOM wireless LAN routers and access points devices contain a reflected cross-site scripting vulnerability in WebUI. If this vulnerability is exploited, an arbitrary script may be executed on a logged-in user's web browser.
nvd
CVE-2024-39300P4LOWCVSS 3.7vv1.5.10 and earlier2024-08-30
CVE-2024-39300 [LOW] CWE-306 CVE-2024-39300: Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier.
Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function of the product is enabled, a remote attacker may login to the product without authentication and alter the product's settings.
nvd